Personal
~/.agents/skills/Project
.roo/skills/One-line install
npx skills add owner/repo/skill --agent rooSkills for Roo Code
Free agent skills compatible with Roo Code by Roo. Search within them or filter by category, level and popularity.
64 skills
Active Directory Vulnerability Assessment
mukul975
Secure your Active Directory with comprehensive assessments.
Operationalizing MISP Threat Feeds
mukul975
Enhance threat detection with curated MISP feeds.
Implementing Velociraptor for IR Collection
mukul975
Streamline endpoint forensic artifact collection for incident response.
Implementing Ransomware Backup Strategy
mukul975
Create a resilient backup strategy against ransomware attacks.
Honeypot for Ransomware Detection
mukul975
Detect ransomware early with canary files and honeypots.
Implementing EPSS Score
mukul975
Prioritize vulnerabilities using real-world exploitation data.
Hunting SaaS SSO Token Abuse
mukul975
Detect and mitigate token replay attacks in SaaS environments.
DNS Tunneling Detection with Zeek
mukul975
Identify covert data exfiltration via DNS queries.
Hunting EVTX with Chainsaw
mukul975
Rapidly analyze Windows event logs for threats.
Hunting Bootkits in EFI
mukul975
Detect and analyze UEFI bootkits on your systems.
Generating Forensic Timelines
mukul975
Transform Windows event logs into actionable forensic timelines.
Fleet Hunting with Velociraptor
mukul975
Conduct fleet-wide threat hunts with deep endpoint visibility.
Eradicating Malware from Infected Systems
mukul975
Systematically remove malware and restore clean states.
Detecting Ransomware Precursors
mukul975
Identify early-stage ransomware indicators in network traffic.
Detecting Privilege Escalation in Kubernetes Pods
mukul975
Enhance Kubernetes security by detecting privilege escalation risks.
Detecting Lateral Movement with Zeek
mukul975
Identify lateral movement techniques in network traffic.
Detecting Entra Offensive Tools
mukul975
Identify malicious activity in Microsoft Graph logs.
Detecting Container Threats with Falco
mukul975
Real-time detection of container runtime threats in Kubernetes and Docker.
Detecting Container Escape with Falco Rules
mukul975
Monitor Linux syscalls to detect container escape attempts in real time.
Detecting Container Escape Attempts
mukul975
Monitor and detect container escape attempts effectively.
Detecting Container Drift
mukul975
Monitor and secure your containers against unauthorized changes.
AWS GuardDuty Findings Automation
mukul975
Automate incident responses for AWS GuardDuty findings.
Deploying Osquery for Endpoint Monitoring
mukul975
Real-time endpoint monitoring with SQL-based queries.
Deploying Honeytokens and Canarytokens
mukul975
Enhance intrusion detection with decoy artifacts.
