Video & Animation

building-ioc-defanging-and-sharing-pipeline

github.com

Build an automated pipeline that ingests raw IOCs (URLs, IPs, domains,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-ioc-enrichment-pipeline-with-opencti

github.com

Build an automated IOC enrichment pipeline on OpenCTI (STIX 2.1 native

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-malware-incident-communication-template

github.com

Build structured communication templates for malware incidents (ransomware,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-identity-federation-with-saml-azure-ad

github.com

Configure SAML 2.0 identity federation between on-premises Active Directory (via AD FS or a third-party IdP) and Microsoft Entra ID, covering federation models (AD FS, password hash sync, pass-through auth, third-party IdP) and the SAML authentication flow. Use when extending on-premises authentication authority to cloud resources or designing hybrid identity SSO architecture for Entra ID.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-incident-response-dashboard

github.com

Builds real-time incident response dashboards in Splunk, Elastic, or

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-identity-governance-lifecycle-process

github.com

Design identity governance and lifecycle (IGA) programs on platforms like SailPoint, Saviynt, or Entra ID Governance, covering joiner-mover-leaver (JML) automation, role mining, access requests, periodic recertification, and orphaned-account remediation sourced from an HR feed. Use when automating cross-system JML provisioning, remediating former-employee access, or building lifecycle processes for SOX, HIPAA, or GDPR compliance.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-devsecops-pipeline-with-gitlab-ci

github.com

Configure a GitLab CI/CD pipeline that embeds SAST (Semgrep, SpotBugs, Gosec, Bandit, NodeJsScan), DAST, container scanning, dependency scanning, and secret detection via GitLab

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-detection-rules-with-sigma

github.com

Builds vendor-agnostic detection rules using the Sigma rule format for

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-cloud-siem-with-sentinel

github.com

Deploy Microsoft Sentinel as a cloud-native SIEM/SOAR by configuring multi-cloud data connectors (AWS, Azure, GCP), writing KQL detection and hunting queries, and building automated Logic Apps response playbooks. Use when establishing a centralized SOC for multi-cloud environments, migrating from a legacy SIEM, or performing petabyte-scale threat hunting; not for AWS-only setups where Security Hub/GuardDuty suffice or for endpoint EDR needs.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-c2-redirector-infrastructure

github.com

Build dumb-pipe and traffic-filtering C2 redirectors with nginx (proxy_pass) and Apache (mod_rewrite), deriving filter rules from a Malleable C2 profile, layering Let

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-c2-infrastructure-with-sliver-framework

github.com

Deploy and harden a Sliver C2 team server (BishopFox

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-detection-rule-with-splunk-spl

github.com

Build effective detection rules using Splunk Search Processing Language

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-automated-malware-submission-pipeline

github.com

Builds an automated malware submission and analysis pipeline that collects

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-attack-pattern-library-from-cti-reports

github.com

Parse cyber threat intelligence reports (Mandiant, CrowdStrike, Talos, Microsoft) with stix2, mitreattack-python, and spaCy to extract adversary behaviors, map them to MITRE ATT&CK technique IDs, and build a searchable STIX 2.1 attack-pattern library with detection templates. Use when cataloging attack patterns from CTI reports for threat-informed detection engineering, or generating Sigma/YARA templates from documented behaviors.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

auditing-uefi-firmware-with-chipsec

github.com

Use Intel CHIPSEC to assess platform firmware configuration, SPI flash write protection, BIOS lock, SMM/SMRR, and Secure Boot variable state, dump SPI flash, and triage UEFI variables for firmware-level threats.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

automating-ioc-enrichment

github.com

Automates the enrichment of raw indicators of compromise with multi-source

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-incident-timeline-with-timesketch

github.com

Build collaborative forensic incident timelines using Timesketch to ingest,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

benchmarking-kubernetes-with-kube-bench

github.com

>-

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-incident-response-playbook

github.com

Designs and documents structured incident response playbooks with step-by-step

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

building-adversary-infrastructure-tracking-system

github.com

Build an automated adversary infrastructure tracking system in Python (dnspython, python-whois, shodan, networkx) that pivots across passive DNS, certificate transparency logs, WHOIS records, and IP enrichment to map threat-actor C2 networks and flag newly registered domains matching known patterns. Use when pivoting from known indicators to discover related C2 infrastructure or maintaining a continuously updated map of a threat actor

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

auditing-tls-certificate-transparency-logs

github.com

Monitors Certificate Transparency (CT) logs to detect unauthorized certificate

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

auditing-mcp-servers-for-tool-poisoning

github.com

Audit MCP servers for tool poisoning, tool shadowing, rug pulls, SSRF, and unauthenticated exposure using Invariant Labs

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

auditing-terraform-infrastructure-for-security

github.com

Auditing Terraform infrastructure-as-code for security misconfigurations

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る

auditing-gcp-iam-permissions

github.com

Auditing Google Cloud Platform IAM permissions to identify overly permissive

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
スキルを見る