Skip to main content
Manus에서 모든 스킬 실행
원클릭으로
GitHub 저장소

dfir-skills

dfir-skills에는 Fuzzdkk에서 수집한 skills 12개가 있으며, 저장소 수준 직업 범위와 사이트 내 skill 상세 페이지를 제공합니다.

수집된 skills
12
Stars
3
업데이트
2026-04-10
Forks
0
직업 범위
직업 카테고리 1개 · 100% 분류됨
저장소 탐색

이 저장소의 skills

alert
정보 보안 분석가

SOC alert triage and investigation guidance. Paste an alert description and observables to get structured investigation steps, hypothesis generation, and recommended queries for your SIEM/EDR.

2026-04-10
dfir-report
정보 보안 분석가

Generate a comprehensive DFIR incident report by consolidating findings from all analysis skills (memory, disk, network, log, malware, IOCs, timeline). Produces an executive and technical report.

2026-04-10
disk-forensics
정보 보안 분석가

Analyze disk images and filesystem artifacts using Sleuthkit (mmls, fls, icat), binwalk, strings, and bulk_extractor. Recover deleted files, build timelines, and examine partition structures.

2026-04-10
evidence-acquisition
정보 보안 분석가

Acquire and preserve digital evidence following forensic best practices. Disk imaging, memory capture, log collection, and chain of custody documentation. Inspired by SIFT workstation methodology.

2026-04-10
ioc-extract
정보 보안 분석가

Extract, deduplicate, and classify Indicators of Compromise (IOCs) from any evidence source — files, logs, memory dumps, PCAPs, reports, or pasted text. Outputs structured IOC lists in multiple formats.

2026-04-10
log-analysis
정보 보안 분석가

Analyze system and security logs (auth.log, syslog, Windows EVTX, Apache/Nginx, JSON logs). Detect brute force, lateral movement, privilege escalation, and anomalous activity.

2026-04-10
malware-triage
정보 보안 분석가

Perform static analysis and triage of suspicious files. Extract hashes, strings, metadata, PE headers, ELF info, embedded URLs, and indicators using strings, file, exiftool, readelf, objdump, radare2, and binwalk.

2026-04-10
memory-forensics
정보 보안 분석가

Analyze memory dumps using Volatility 3 and strings. Enumerate processes, network connections, injected code, and suspicious artifacts from RAM captures.

2026-04-10
network-forensics
정보 보안 분석가

Analyze PCAP/PCAPNG network captures using tshark. Detect C2 beacons, data exfiltration, lateral movement, DNS tunneling, and suspicious traffic patterns.

2026-04-10
reverse-engineering
정보 보안 분석가

Reverse engineer binaries using radare2 (r2), rabin2, objdump, readelf, and strings. Analyze PE/ELF executables, shellcode, scripts, and documents. Covers disassembly, control flow, imports, crypto detection, and anti-analysis techniques.

2026-04-10
timeline
정보 보안 분석가

Build a unified forensic timeline from multiple evidence sources — filesystem MACBtimes, logs, memory artifacts, and network events. Produces a chronological attack narrative.

2026-04-10
tools
정보 보안 분석가

List all available DFIR/SOC skills and installed forensic tools with descriptions and use cases. Quick reference for the analyst.

2026-04-10