Skip to main content

이 저장소의 skills

xalgord/xalgorix - 10페이지

SkillsMP는 xalgord/xalgorix에서 855개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

xalgord/xalgorix

수집된 skill 855개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Tests Android inter-process communication (IPC) through intents for vulnerabilities including intent injection, unauthorized component access, broadcast sniffing, pending intent hijacking, and content provider data leakage. Use when assessing Android app…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Tests authentication and authorization mechanisms in mobile application APIs to identify broken authentication, insecure token management, session fixation, privilege escalation, and IDOR vulnerabilities. Use when performing API security assessments against…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns. Uses the Python netflow library to decode flow records, builds traffic baselines, and applies statistical analysis to identify…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Craft, send, sniff, and dissect network packets using Scapy for protocol analysis, network reconnaissance, and traffic anomaly detection in authorized security testing

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Captures and analyzes network packet data using Wireshark and tshark to identify malicious traffic patterns, diagnose protocol issues, extract artifacts, and support incident response investigations on authorized network segments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap in authorized environments to intercept, analyze, and modify network traffic for testing encryption enforcement, certificate validation, and detection capabilities.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Designs and implements VLAN-based network segmentation on managed switches to isolate network zones, enforce access control between segments, and reduce the attack surface by limiting lateral movement paths in enterprise network environments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configures pfSense firewall rules, NAT policies, VPN tunnels, and traffic shaping to enforce network segmentation, control traffic flow, and protect internal network zones in enterprise and small-to-medium business environments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Installs, configures, and tunes Snort 3 intrusion detection system to monitor network traffic for malicious activity using custom and community rulesets, preprocessors, and alert output plugins on authorized network segments.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploys and configures Suricata IDS/IPS with Emerging Threats rulesets, EVE JSON logging, and custom rules for real-time network traffic inspection, threat detection, and integration with SIEM platforms for centralized security monitoring.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detect and prevent ARP spoofing attacks using ARPWatch, Dynamic ARP Inspection, Wireshark analysis, and custom monitoring scripts to protect against man-in-the-middle interception.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detects command-and-control (C2) communications tunneled through DNS protocol including DNS tunneling tools (Iodine, dnscat2, dns2tcp, Cobalt Strike DNS beacon), domain generation algorithms (DGA), encoded payload delivery via TXT/CNAME records, and DNS…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detect data exfiltration through DNS tunneling by analyzing query entropy, subdomain length, query volume, TXT record abuse, and response payload sizes using passive DNS monitoring.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detect DNS-based data exfiltration by analyzing Zeek dns.log for high-entropy subdomains and anomalous query patterns

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detect lateral movement in network traffic using Zeek (formerly Bro) log analysis. Parses conn.log, smb_mapping.log, smb_files.log, dce_rpc.log, kerberos.log, and ntlm.log to identify SMB file transfers, NTLM account spray activity, remote service execution,…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploys and configures Zeek (formerly Bro) network security monitor to passively analyze network traffic, generate structured logs, detect anomalous behavior, and create custom detection scripts for threat hunting and incident response.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Detect network reconnaissance and port scanning using Suricata and Snort IDS signatures, threshold-based detection rules, and traffic anomaly analysis to identify Nmap, Masscan, and custom scanning activity.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configures Fail2ban with custom filters and actions to detect port scanning activity, SSH brute force attempts, and network reconnaissance, automatically banning offending IP addresses and alerting security teams to suspicious network probing.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation, RPKI deployment, and BGP monitoring defenses against prefix hijacking and route leak attacks on internet routing infrastructure.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Identifies and exploits IPv6-specific vulnerabilities including SLAAC spoofing, Router Advertisement flooding, and IPv6 tunneling during authorized assessments to test dual-stack security controls and IPv6-aware network defenses.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Identifies and exploits SMB protocol vulnerabilities using Metasploit Framework during authorized penetration tests to demonstrate risks from unpatched Windows systems, misconfigured shares, and weak authentication in enterprise networks.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implement BGP route origin validation using RPKI with Route Origin Authorizations, RPKI-to-Router protocol, and ROV policies on Cisco and Juniper routers to prevent route hijacking.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploys remote browser isolation (RBI) as a core component of a Zero Trust architecture. Implements isolation policies with URL categorization and risk-based routing, content disarming and reconstruction (CDR) for file sanitization, data loss prevention…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure Cloudflare DDoS protection with managed rulesets, rate limiting, WAF rules, Bot Management, and origin protection to mitigate volumetric, protocol, and application-layer attacks.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Implements 802.1X port-based network access control using RADIUS authentication, PacketFence NAC, and switch configurations to enforce identity-based access policies, posture assessment, and automatic VLAN assignment for authorized devices.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy Cisco Identity Services Engine for 802.1X wired and wireless authentication, MAC Authentication Bypass, posture assessment, and dynamic VLAN assignment for network access control.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy and configure Suricata as a network intrusion prevention system with custom rules, Emerging Threats rulesets, and inline traffic inspection for real-time threat blocking.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Design and implement network segmentation using firewall security zones, VLANs, ACLs, and microsegmentation policies to restrict lateral movement and enforce least-privilege network access.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy and query Arkime (formerly Moloch) for full packet capture network traffic analysis. Uses the Arkime API v3 to search sessions, download PCAPs, analyze connection patterns, detect beaconing behavior, and identify suspicious network flows. Monitors DNS…

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Build network traffic baselines from NetFlow/IPFIX data using Python pandas for statistical analysis, z-score anomaly detection, and hourly/daily traffic pattern profiling

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure and deploy Palo Alto Networks next-generation firewalls with App-ID, User-ID, zone-based policies, SSL decryption, and threat prevention profiles for enterprise network security.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Simulates ARP spoofing attacks in authorized lab or pentest environments using arpspoof, Ettercap, and Scapy to demonstrate man-in-the-middle risks, test network detection capabilities, and validate ARP inspection countermeasures.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Simulates bandwidth throttling and network degradation attacks using tc, iperf3, and Scapy in authorized environments to test quality-of-service controls, application resilience, and network monitoring detection of traffic manipulation attacks.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Enumerates DNS records, attempts zone transfers, brute-forces subdomains, and maps DNS infrastructure during authorized reconnaissance to identify attack surface, misconfigurations, and information disclosure in target domains.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Automate network traffic analysis using tshark and pyshark for protocol statistics, suspicious flow detection, DNS anomaly identification, and IOC extraction from PCAP files

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Deploy Zeek network security monitor to capture, parse, and analyze network traffic metadata for threat detection, anomaly identification, and forensic investigation.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Crafts and injects custom network packets using Scapy, hping3, and Nemesis during authorized security assessments to test firewall rules, IDS detection, protocol handling, and network stack resilience against malformed and spoofed traffic.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Simulates SSL stripping attacks using sslstrip, Bettercap, and mitmproxy in authorized environments to test HSTS enforcement, certificate validation, and HTTPS upgrade mechanisms that protect users from downgrade attacks on encrypted connections.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Configure SSL/TLS inspection on network security devices to decrypt, inspect, and re-encrypt HTTPS traffic for threat detection while managing certificates, exemptions, and privacy compliance.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Assess SSL/TLS server configurations using the sslyze Python library to evaluate cipher suites, certificate chains, protocol versions, HSTS headers, and known vulnerabilities like Heartbleed and ROBOT.

원문 언어: 영어

업데이트
수집된 skill 855개 중 40개를 표시합니다.