Video & Animation

analyzing-browser-forensics-with-hindsight

github.com

Parse Chromium-based browser databases with Hindsight to extract and correlate browsing history, downloads, cookies, cached content, autofill data, saved passwords, and extensions from Chrome, Edge, Brave, Opera, and Vivaldi into a unified timeline (XLSX, JSON, or SQLite output). Use during incident response, insider-threat investigations, or criminal cases when you need to reconstruct a user

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-campaign-attribution-evidence

github.com

Systematically evaluate cyber-campaign evidence to attribute an operation to a threat actor, using the Diamond Model and Analysis of Competing Hypotheses (ACH) to weigh infrastructure overlaps, TTP consistency, malware code similarity, and timing/language artifacts into confidence-weighted attribution assessments. Use when an incident investigation needs a defensible attribution confidence level.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-certificate-transparency-for-phishing

github.com

Monitor Certificate Transparency logs using crt.sh and Certstream to

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-android-malware-with-apktool

github.com

Perform static analysis of Android APK malware using apktool for resource decompilation, jadx for Java source recovery, and androguard for manifest inspection, dangerous permission-combination detection, and identification of obfuscated code, dynamic code loading, and reflection-based API calls. Use to statically triage a suspicious APK without executing it or to build mobile malware detection rules.

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-api-gateway-access-logs

github.com

Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

abusing-shadow-credentials-for-privesc

github.com

Take over Active Directory accounts by writing attacker-controlled public keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, or Certipy, then authenticate via PKINIT to recover the target

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-apt-group-with-mitre-navigator

github.com

Query ATT&CK data with attackcti, mitreattack-python, and stix2, then build MITRE ATT&CK Navigator layers and multi-layer heatmap overlays mapping one or more APT groups

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

analyzing-azure-activity-logs-for-threats

github.com

Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

bilibili/ijkplayer

github.com

Android/iOS video player based on FFmpeg n3.4, with MediaCodec, VideoToolbox support.

$ npx skills add bilibili/ijkplayer
스킬 보기→

supply-chain-security

github.com

Use for software supply-chain security assessment covering SBOM, SCA, CI/CD pipelines, container images, build integrity, dependency provenance, and vulnerability reachability.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

reverse-engineering

github.com

Provides reverse engineering techniques. Use when the main job is to understand how a compiled, obfuscated, packed, or virtualized target works before exploiting or solving it, including binaries, APKs, WASM, firmware, custom VMs, bytecode, malware-like loaders, and anti-debug or anti-analysis logic. Do not use it when the vulnerability is already understood and the remaining task is exploitation; use pwn instead. Do not use it for pure web workflows, log or disk forensics, or standalone crypto problems unless reversing the implementation is the real blocker.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

radio-sdr

github.com

Use for authorized RF/SDR security research including signal identification, replay feasibility study in shielded labs, and wireless protocol analysis outside classic Wi-Fi.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

radare2

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

pwn-chain

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

huggingface/diffusers

★ 33.8kgithub.com

Use before opening a PR, or whenever asked to self-review a diffusers contribution. Applies the same rubric as the `@claude` CI (checks the diff against references/review-rules.md, traces call paths for dead code). Reports findings grouped by severity, flagging what to fix before submitting (blocking issues + dead code) vs what to leave for the actual review. Report-only — does not edit files.

$ npx skills add huggingface/diffusers
스킬 보기→

abusing-dpapi-for-credential-access

github.com

Extract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or offline using SharpDPAPI, SharpChrome, Mimikatz, or Impacket

$ npx skills add mukul975/Anthropic-Cybersecurity-Skills
스킬 보기→

patch-diff-exploit

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

pentest-tools

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

ot-ics

github.com

Use for authorized OT/ICS security assessment covering Purdue model zoning, PLC/SCADA exposure, industrial protocol discovery, and safe passive-first evaluation.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

protocol-reverse

github.com

Use for authorized reverse engineering of custom binary protocols, Protobuf/gRPC, WebSocket frames, and PCAP-driven protocol recovery.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

threat-intelligence

github.com

Use for authorized OSINT and cyber threat intelligence that enriches IOCs, campaigns, impersonation, scams, or threat actors from public sources. Includes bounded X/Twitter search through Xquik, source preservation, corroboration, and evidence handoff.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

llm-security

github.com

Use for authorized security assessment of LLM applications and AI agents, including prompt injection, tool abuse, RAG exposure, memory poisoning, and model supply-chain risks.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

macos-reverse

github.com

Use for authorized macOS and Mach-O reverse engineering including codesign, Objective-C/Swift recovery, endpoint security surfaces, and Apple platform malware analysis.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→

malware-analysis

github.com

Use when analyzing suspected malware through static, dynamic, and behavioral techniques, including IOC extraction, YARA or Sigma rules, sandboxing, and anti-analysis behavior.

$ npx skills add zhaoxuya520/reverse-skill
스킬 보기→