Skip to main content
在 Manus 中运行任何 Skill
一键导入
kyssta-exe
GitHub 创作者资料

kyssta-exe

按仓库查看 3 个 GitHub 仓库中的 889 个已收集 skills。

已收集 skills
889
仓库
3
更新
2026-07-21
仓库浏览

仓库与代表性 skills

abusing-dpapi-for-credential-access
信息安全分析师

Extract DPAPI-protected secrets such as credentials and browser data offline and online.

2026-07-21
abusing-shadow-credentials-for-privesc
信息安全分析师

Take over Active Directory user and computer accounts by writing alternate certificate keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, and Certipy, then authenticate via PKINIT.

2026-07-21
achieving-cmmc-level-2-compliance
信息安全分析师

Prepare a defense-contractor environment for CMMC Level 2 certification: scope CUI and FCI, implement the 110 NIST SP 800-171 Rev 2 security requirements across 14 families, compute the SPRS score with the DoD Assessment Methodology, manage a compliant POA&M, and ready the organization for a C3PAO assessment. Use when an organization handles Controlled Unclassified Information (CUI) under a DoD contract, when a contract carries DFARS clause 252.204-7012/7019/7020/7021, when preparing for or responding to a CMMC assessment, when computing or improving an SPRS score, when building a System Security Plan or POA&M for 800-171, or when scoping which systems are in the CUI boundary. Keywords: CMMC, CMMC Level 2, NIST 800-171, SP 800-171 Rev 2, CUI, FCI, SPRS, DFARS 7012, C3PAO, POA&M, System Security Plan, DoD Assessment Methodology, 110 controls, defense industrial base, DIB, FedRAMP equivalency.

2026-07-21
acquiring-disk-image-with-dd-and-dcfldd
信息安全分析师

Create forensically sound bit-for-bit disk images using dd and dcfldd while preserving evidence integrity through hash verification.

2026-07-21
analyzing-active-directory-acl-abuse
信息安全分析师

Detect dangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and WriteOwner abuse paths

2026-07-21
analyzing-android-malware-with-apktool
信息安全分析师

Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source recovery, and androguard for permission analysis, manifest inspection, and suspicious API call detection.

2026-07-21
analyzing-api-gateway-access-logs
信息安全分析师

Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect BOLA/IDOR attacks, rate limit bypass, credential scanning, and injection attempts. Uses pandas for statistical analysis of request patterns and anomaly detection. Use when investigating API abuse or building API-specific threat detection rules.

2026-07-21
analyzing-apt-group-with-mitre-navigator
信息安全分析师

Analyze advanced persistent threat (APT) group techniques using MITRE ATT&CK Navigator to create layered heatmaps of adversary TTPs for detection gap analysis and threat-informed defense.

2026-07-21
当前展示该仓库 Top 8 / 886 个已收集 skills。
已展示 3 / 3 个仓库
已展示全部仓库