Found 699 skills for "mukul975" Page 16 of 59

extracting-browser-history-artifacts

When investigating user web activity as part of a forensic examination During insider threat investigations to establish patterns of data exfiltration...

github 4 files

hardening-linux-endpoint-with-cis-benchmark

Use this skill when: Hardening Linux servers (Ubuntu, RHEL, CentOS, Debian) against CIS benchmarks Automating Linux security baselines using Ansible, ...

github 8 files

hunting-for-cobalt-strike-beacons

Cobalt Strike is the most prevalent command-and-control framework used by both red teams and threat actors. Beacon, its primary payload, communicates ...

github 4 files

detecting-dll-sideloading-attacks

When investigating potential DLL hijacking in enterprise environments After EDR alerts on unsigned DLLs loaded by signed applications When hunting for...

github 8 files

detecting-insider-data-exfiltration-via-dlp

When investigating security incidents that require detecting insider data exfiltration via dlp When building detection rules or threat hunting queries...

github 4 files

detecting-suspicious-oauth-application-consent

Illicit consent grant attacks trick users into granting excessive permissions to malicious OAuth applications in Azure AD / Microsoft Entra ID. This s...

github 4 files

eradicating-malware-from-infected-systems

Malware infection confirmed and containment is in place Forensic investigation has identified all persistence mechanisms All compromised systems have ...

github 8 files

performing-insider-threat-investigation

DLP (Data Loss Prevention) alerts on large data transfers to personal cloud storage or USB devices User behavior analytics (UBA) detects anomalous acc...

github 4 files

performing-gcp-security-assessment-with-forseti

When conducting periodic security assessments of GCP organizations and projects When onboarding new GCP projects and establishing security baselines W...

github 4 files

performing-graphql-introspection-attack

Testing GraphQL endpoints for exposed introspection that reveals the complete API schema Mapping the attack surface of a GraphQL API to identify sensi...

github 4 files

performing-docker-bench-security-assessment

Docker Bench for Security is an open-source script that checks dozens of common best practices around deploying Docker containers in production. Based...

github 8 files

performing-aws-privilege-escalation-assessment

When conducting authorized penetration testing of AWS IAM configurations When validating that IAM policies follow the principle of least privilege Whe...

github 4 files