Detection Engineering skills
Free agent skills tagged detection engineering, ready to install into any SKILL.md-compatible agent.
10 skills
Operationalizing MISP Threat Feeds
mukul975
Enhance threat detection with curated MISP feeds.
Configuring Windows Event Logging
mukul975
Enhance Windows security event logging for better detection.
Building Detection Rules with Splunk SPL
mukul975
Create effective security detection rules in Splunk.
Detecting Fileless Attacks
mukul975
Identify fileless malware and in-memory threats effectively.
Detecting Entra Offensive Tools
mukul975
Identify malicious activity in Microsoft Graph logs.
Detecting Container Threats with Falco
mukul975
Real-time detection of container runtime threats in Kubernetes and Docker.
Implementing SIEM Use Cases
mukul975
Enhance SIEM detection with structured use case implementation.
Mapping MITRE ATT&CK Techniques
mukul975
Streamline your threat detection with ATT&CK mapping.
Building Attack Pattern Library
mukul975
Extract and catalog adversary behaviors from CTI reports.
SIEM Use Case Tuning
mukul975
Reduce alert fatigue in your SIEM environment.
