Forensics skills
Free agent skills tagged forensics, ready to install into any SKILL.md-compatible agent.
25 skills
Generating Forensic Timelines
mukul975
Transform Windows event logs into actionable forensic timelines.
Collecting Volatile Evidence
mukul975
Capture critical data from compromised hosts before it's lost.
Incident Response
alirezarezvani
Manage and classify security incidents effectively.
Extracting Windows Event Logs
mukul975
Analyze Windows Event Logs for security insights.
CloudTrail Log Analysis
mukul975
Enhance AWS security through log analysis and monitoring.
Email Header Analysis
mukul975
Investigate phishing emails by analyzing headers.
Analyzing Docker Container Forensics
mukul975
Investigate compromised Docker containers for malicious activity.
Acquiring Disk Image with dd and dcfldd
mukul975
Create forensically sound disk images with ease.
Extracting Credentials from Memory Dump
mukul975
Recover credentials from Windows memory dumps efficiently.
Analyzing Disk Image with Autopsy
mukul975
Perform forensic analysis on disk images with ease.
Analyzing Windows Registry for Artifacts
mukul975
Extract and analyze Windows Registry data for forensic investigations.
Analyzing Slack Space and File System Artifacts
mukul975
Recover hidden data from NTFS file systems during forensic analysis.
Analyzing Windows LNK Files
mukul975
Extract forensic data from Windows shortcut files.
Investigating Ransomware Attack Artifacts
mukul975
Forensically analyze ransomware incidents and recover evidence.
Extracting Browser History Artifacts
mukul975
Extract and analyze web activity from major browsers.
Memory Forensics
wshobson
Analyze memory dumps for incident response and malware detection.
OSS Security Forensics
nousresearch
Investigate open-source supply chain attacks effectively.
Analyzing Prefetch Files
mukul975
Extract execution history from Windows Prefetch files.
Analyzing Ransomware Payment Wallets
mukul975
Trace ransomware payments using blockchain analysis.
Analyzing USB Device Connection History
mukul975
Reconstruct USB connection timelines for forensic analysis.
Case Review
zhaoxuya520
Audit reverse engineering cases for compliance and readiness.
Analyzing Linux Kernel Rootkits
mukul975
Detect and analyze kernel-level rootkits in Linux systems.
Integrity Forensics
wanshuiyin
Conduct integrity audits on research papers efficiently.
Diagnose Why Work Stopped
paperclipai
Identify and address stalled issue trees effectively.
