Video & Animation

analyzing-lnk-file-and-jump-list-artifacts

github.com

Analyze Windows LNK shortcut files and Jump List artifacts with LECmd,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-linux-elf-malware

github.com

Analyze malicious Linux ELF binaries — botnets, cryptominers, ransomware,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-macro-malware-in-office-documents

github.com

Analyzes malicious VBA macros embedded in Microsoft Office documents

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-malicious-pdf-with-peepdf

github.com

Perform static analysis of malicious PDF documents using peepdf, pdfid,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-indicators-of-compromise

github.com

Analyzes indicators of compromise (IOCs) including IP addresses, domains,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-ios-app-security-with-objection

github.com

>-

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-linux-audit-logs-for-intrusion

github.com

Uses the Linux Audit framework (auditd) with ausearch and aureport utilities

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-golang-malware-with-ghidra

github.com

Reverse engineer Go-compiled malware in Ghidra by parsing Go buildinfo

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-docker-container-forensics

github.com

Investigate compromised Docker containers by analyzing images, layers,

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-email-headers-for-phishing-investigation

github.com

Parse and analyze email headers (Received chain, Return-Path, Message-ID)

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-ethereum-smart-contract-vulnerabilities

github.com

Perform static and symbolic analysis of Solidity smart contracts using

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-heap-spray-exploitation

github.com

Detect and analyze heap spray attacks in memory dumps using Volatility3

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-kubernetes-audit-logs

github.com

>-

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-certificate-transparency-for-phishing

github.com

Monitor Certificate Transparency logs using crt.sh and Certstream to

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-cobaltstrike-malleable-c2-profiles

github.com

Parse and analyze Cobalt Strike Malleable C2 profiles with dissect.cobaltstrike (profiles and beacon-payload configs) and pyMalleableC2 (AST parsing) to extract HTTP/DNS transforms, URIs, headers, sleep/jitter, and injection behavior, then generate network detection signatures. Use when reverse-engineering a captured malleable profile or building detections against Cobalt Strike Beacon traffic.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-command-and-control-communication

github.com

Analyzes malware C2 communication over HTTP, HTTPS, DNS, and custom

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-cloud-storage-access-patterns

github.com

Detect abnormal access in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCS audit logs, and Azure Storage Analytics for after-hours bulk downloads, new-IP access, and API-call spikes (e.g. GetObject) via statistical baselines and time-series anomaly detection. Use when investigating suspected cloud data exfiltration or building related detection rules.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-cobalt-strike-beacon-configuration

github.com

Extract and analyze Cobalt Strike beacon configuration from PE files

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-azure-activity-logs-for-threats

github.com

Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-bootkit-and-rootkit-samples

github.com

Analyzes bootkit and advanced rootkit malware infecting the Master

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-apt-group-with-mitre-navigator

github.com

Query ATT&CK data with attackcti, mitreattack-python, and stix2, then build MITRE ATT&CK Navigator layers and multi-layer heatmap overlays mapping one or more APT groups

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-browser-forensics-with-hindsight

github.com

Parse Chromium-based browser databases with Hindsight to extract and correlate browsing history, downloads, cookies, cached content, autofill data, saved passwords, and extensions from Chrome, Edge, Brave, Opera, and Vivaldi into a unified timeline (XLSX, JSON, or SQLite output). Use during incident response, insider-threat investigations, or criminal cases when you need to reconstruct a user

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-api-gateway-access-logs

github.com

Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-android-malware-with-apktool

github.com

Perform static analysis of Android APK malware using apktool for resource decompilation, jadx for Java source recovery, and androguard for manifest inspection, dangerous permission-combination detection, and identification of obfuscated code, dynamic code loading, and reflection-based API calls. Use to statically triage a suspicious APK without executing it or to build mobile malware detection rules.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→