Skip to main content

이 저장소의 skills

AgentFlocks/flocks - 4페이지

SkillsMP는 AgentFlocks/flocks에서 771개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

AgentFlocks/flocks

수집된 skill 771개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Deploy and configure the Havoc C2 framework with teamserver, HTTPS listeners, redirectors, and Demon agents for authorized red team operations.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Apply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permission assignments, reducing role explosion and enforcing least privilege.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Build a structured SOC escalation matrix defining severity tiers, response SLAs, escalation paths, and notification procedures for security incidents.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Builds SOC performance metrics and KPI tracking dashboards measuring Mean Time to Detect (MTTD), Mean Time to Respond (MTTR), alert quality ratios, analyst productivity, and detection coverage using SIEM data. Use when SOC leadership needs operational…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Builds a structured SOC incident response playbook for ransomware attacks covering detection, containment, eradication, and recovery phases with specific SIEM queries, isolation procedures, and decision trees. Use when SOC teams need formalized response…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Build comprehensive threat actor profiles using open-source intelligence (OSINT) techniques to document adversary motivations, capabilities, infrastructure, and TTPs for proactive defense.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy MISP (Malware Information Sharing Platform) to aggregate, correlate, and distribute threat intelligence feeds from multiple sources for centralized IOC management and automated SIEM integration.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Build a systematic threat hunt hypothesis framework that transforms threat intelligence, attack patterns, and environmental data into testable hunting hypotheses.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Build automated threat intelligence enrichment pipelines in Splunk Enterprise Security using lookup tables, modular inputs, and the Threat Intelligence Framework.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Builds automated threat intelligence feed integration pipelines connecting STIX/TAXII feeds, open-source threat intel, and commercial TI platforms into SIEM and security tools for real-time IOC matching and alerting. Use when SOC teams need to operationalize…

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Building a Threat Intelligence Platform (TIP) involves deploying and integrating multiple CTI tools into a unified system for collecting, analyzing, enriching, and disseminating threat intelligence. T

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Implement a vulnerability aging dashboard and SLA tracking system to measure remediation performance against severity-based timelines and drive accountability.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Deploy DefectDojo as a centralized vulnerability management dashboard with scanner integrations, deduplication, metrics tracking, and Jira ticketing workflows.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Build a vulnerability exception and risk acceptance tracking system with approval workflows, compensating controls documentation, and expiration management.

원문 언어: 영어

업데이트
직업 분류
소프트웨어 개발자
설명

Builds a structured vulnerability scanning workflow using tools like Nessus, Qualys, and OpenVAS to discover, prioritize, and track remediation of security vulnerabilities across infrastructure. Use when SOC teams need to establish recurring vulnerability…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Discovering and accessing unprotected pages, APIs, and administrative interfaces by enumerating URLs and bypassing authentication controls during authorized security assessments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Systematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable detection, blocking, and threat intelligence sharing. Covers network, host, email, and behavioral indicators using STIX/TAXII…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Collects and synthesizes open-source intelligence (OSINT) about threat actors, malicious infrastructure, and attack campaigns using publicly available data sources, passive reconnaissance tools, and dark web monitoring. Use when investigating external threat…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

MISP (Malware Information Sharing Platform) is an open-source threat intelligence platform for gathering, sharing, storing, and correlating Indicators of Compromise (IOCs) of targeted attacks, threat

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Collect volatile forensic evidence from a compromised system following order of volatility, preserving memory, network connections, processes, and system state before they are lost.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts security testing of REST, GraphQL, and gRPC APIs to identify vulnerabilities in authentication, authorization, rate limiting, input validation, and business logic. The tester uses the OWASP API Security Top 10 as the testing framework, combining Burp…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment, cloud-native log analysis, resource isolation, and forensic evidence acquisition adapted for ephemeral cloud infrastructure. Activates for…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

This skill outlines methodologies for performing authorized penetration testing against AWS, Azure, and GCP cloud environments. It covers understanding the shared responsibility model for testing scope, leveraging cloud-specific attack tools like Pacu and…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Perform DCSync attacks to replicate Active Directory credentials and establish domain persistence by extracting KRBTGT, Domain Admin, and service account hashes for Golden Ticket creation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts external reconnaissance using Open Source Intelligence (OSINT) techniques to map an organization's external attack surface without directly interacting with target systems. The tester gathers information from public sources including DNS records,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Plan and execute a comprehensive red team engagement covering reconnaissance through post-exploitation using MITRE ATT&CK-aligned TTPs to evaluate an organization's detection and response capabilities.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Execute an internal network penetration test simulating an insider threat or post-breach attacker to identify lateral movement paths, privilege escalation vectors, and sensitive data exposure within the corporate network.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conduct internal Active Directory reconnaissance using BloodHound Community Edition to map attack paths, identify privilege escalation chains, and discover misconfigurations in domain environments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection vectors, assessing spread, and executing eradication procedures. Covers the full lifecycle from detection through containment, analysis,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap in authorized environments to intercept, analyze, and modify network traffic for testing encryption enforcement, certificate validation, and detection capabilities.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Performs memory forensics analysis using Volatility 3 to extract evidence of malware execution, process injection, network connections, and credential theft from RAM dumps captured during incident response. Covers memory acquisition, process analysis, DLL…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network communication, authentication, cryptography, and platform-specific…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts comprehensive network penetration tests against authorized target environments by performing host discovery, port scanning, service enumeration, vulnerability identification, and controlled exploitation to assess the security posture of network…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Pass-the-Ticket (PtT) is a lateral movement technique that uses stolen Kerberos tickets (TGT or TGS) to authenticate to services without knowing the user's password. By extracting Kerberos tickets fro

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages across the organization, and remediating affected accounts. Covers email header analysis, URL/attachment…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Design and execute a social engineering penetration test including phishing, vishing, smishing, and physical pretexting campaigns to measure human security resilience and identify training gaps.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Plan and execute authorized vishing (voice phishing) pretext calls to assess employee susceptibility to social engineering and evaluate security awareness controls.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Spearphishing simulation is a targeted social engineering attack vector used by red teams to gain initial access. Unlike broad phishing campaigns, spearphishing uses OSINT-derived intelligence to craf

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Conducts authorized wireless network penetration tests to assess the security of WiFi infrastructure by testing for weak encryption protocols, captive portal bypasses, evil twin attacks, WPA2/WPA3 handshake capture, rogue access point detection, and…

원문 언어: 영어

업데이트
수집된 skill 771개 중 40개를 표시합니다.