Video & Animation
building-ioc-defanging-and-sharing-pipeline
Build an automated pipeline that ingests raw IOCs (URLs, IPs, domains,
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-ioc-enrichment-pipeline-with-opencti
Build an automated IOC enrichment pipeline on OpenCTI (STIX 2.1 native
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-malware-incident-communication-template
Build structured communication templates for malware incidents (ransomware,
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-identity-federation-with-saml-azure-ad
Configure SAML 2.0 identity federation between on-premises Active Directory (via AD FS or a third-party IdP) and Microsoft Entra ID, covering federation models (AD FS, password hash sync, pass-through auth, third-party IdP) and the SAML authentication flow. Use when extending on-premises authentication authority to cloud resources or designing hybrid identity SSO architecture for Entra ID.
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-incident-response-dashboard
Builds real-time incident response dashboards in Splunk, Elastic, or
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-identity-governance-lifecycle-process
Design identity governance and lifecycle (IGA) programs on platforms like SailPoint, Saviynt, or Entra ID Governance, covering joiner-mover-leaver (JML) automation, role mining, access requests, periodic recertification, and orphaned-account remediation sourced from an HR feed. Use when automating cross-system JML provisioning, remediating former-employee access, or building lifecycle processes for SOX, HIPAA, or GDPR compliance.
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-devsecops-pipeline-with-gitlab-ci
Configure a GitLab CI/CD pipeline that embeds SAST (Semgrep, SpotBugs, Gosec, Bandit, NodeJsScan), DAST, container scanning, dependency scanning, and secret detection via GitLab
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-detection-rules-with-sigma
Builds vendor-agnostic detection rules using the Sigma rule format for
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-cloud-siem-with-sentinel
Deploy Microsoft Sentinel as a cloud-native SIEM/SOAR by configuring multi-cloud data connectors (AWS, Azure, GCP), writing KQL detection and hunting queries, and building automated Logic Apps response playbooks. Use when establishing a centralized SOC for multi-cloud environments, migrating from a legacy SIEM, or performing petabyte-scale threat hunting; not for AWS-only setups where Security Hub/GuardDuty suffice or for endpoint EDR needs.
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-c2-redirector-infrastructure
Build dumb-pipe and traffic-filtering C2 redirectors with nginx (proxy_pass) and Apache (mod_rewrite), deriving filter rules from a Malleable C2 profile, layering Let
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-c2-infrastructure-with-sliver-framework
Deploy and harden a Sliver C2 team server (BishopFox
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-detection-rule-with-splunk-spl
Build effective detection rules using Splunk Search Processing Language
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-automated-malware-submission-pipeline
Builds an automated malware submission and analysis pipeline that collects
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-attack-pattern-library-from-cti-reports
Parse cyber threat intelligence reports (Mandiant, CrowdStrike, Talos, Microsoft) with stix2, mitreattack-python, and spaCy to extract adversary behaviors, map them to MITRE ATT&CK technique IDs, and build a searchable STIX 2.1 attack-pattern library with detection templates. Use when cataloging attack patterns from CTI reports for threat-informed detection engineering, or generating Sigma/YARA templates from documented behaviors.
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsauditing-uefi-firmware-with-chipsec
Use Intel CHIPSEC to assess platform firmware configuration, SPI flash write protection, BIOS lock, SMM/SMRR, and Secure Boot variable state, dump SPI flash, and triage UEFI variables for firmware-level threats.
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsautomating-ioc-enrichment
Automates the enrichment of raw indicators of compromise with multi-source
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-incident-timeline-with-timesketch
Build collaborative forensic incident timelines using Timesketch to ingest,
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbenchmarking-kubernetes-with-kube-bench
>-
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-incident-response-playbook
Designs and documents structured incident response playbooks with step-by-step
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsbuilding-adversary-infrastructure-tracking-system
Build an automated adversary infrastructure tracking system in Python (dnspython, python-whois, shodan, networkx) that pivots across passive DNS, certificate transparency logs, WHOIS records, and IP enrichment to map threat-actor C2 networks and flag newly registered domains matching known patterns. Use when pivoting from known indicators to discover related C2 infrastructure or maintaining a continuously updated map of a threat actor
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsauditing-tls-certificate-transparency-logs
Monitors Certificate Transparency (CT) logs to detect unauthorized certificate
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsauditing-mcp-servers-for-tool-poisoning
Audit MCP servers for tool poisoning, tool shadowing, rug pulls, SSRF, and unauthenticated exposure using Invariant Labs
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsauditing-terraform-infrastructure-for-security
Auditing Terraform infrastructure-as-code for security misconfigurations
$ npx skills add mukul975/Anthropic-Cybersecurity-Skillsauditing-gcp-iam-permissions
Auditing Google Cloud Platform IAM permissions to identify overly permissive
$ npx skills add mukul975/Anthropic-Cybersecurity-Skills