Skip to main content

tsale/awesome-dfir-skills

SkillsMP 已收集 tsale/awesome-dfir-skills 中的 8 个 Skill。打开任一 Skill 可查看来源和详情。

最近记录的来源活动
SkillsMP 收录数据更新
已收集 skills
8
GitHub 星标
321
GitHub Forks
35

这个仓库中的 skills

1 个职业分类 · 已分类 100%

已展示 8 / 8 个已收集 Skill。

职业分类
信息安全分析师
描述

Apply the NATO Admiralty System (AJP-2.1) to assess source reliability and information credibility in cyber threat intelligence, OSINT, and breach analysis. Use this skill whenever you need to evaluate a CTI report, breach claim, dark web forum post, threat…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Build structured threat actor profiles using the 5W1H framework and the Diamond Model. Use this skill whenever the user wants to profile a threat actor, create a TA report, analyze an APT group, build an adversary profile, assess threat actor capability, map…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Help users write, validate, and troubleshoot osquery SQL queries using provided osquery table schemas as the authoritative source.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Professional malware analysis workflow for PE executables and suspicious files. Triggers on file uploads with requests like "analyze this malware", "analyze this sample", "what does this executable do", "check this file for malware", or any request to examine…

原文语言:英语

更新
职业分类
信息安全分析师
描述

Analyse Mitre ATT&CK tactics, techniques and sub-techniques. Use when performing analysis of threat detections, threat models, security risks or cyber threat intelligence

原文语言:英语

更新
职业分类
信息安全分析师
描述

Create a targeted intrusion timeline for a Windows incident using whatever artifacts are available (event logs, EDR, SIEM exports, triage notes).

原文语言:英语

更新
职业分类
信息安全分析师
描述

First-hour intake checklist + questions that produce an actionable scope and evidence plan.

原文语言:英语

更新
已展示 8 / 8 个已收集 Skill。