Threat Detection skills
Free agent skills tagged threat detection, ready to install into any SKILL.md-compatible agent.
23 skills
Deploying EDR Agent with CrowdStrike
mukul975
Streamline deployment of CrowdStrike Falcon EDR agents.
Deploying Honeytokens and Canarytokens
mukul975
Enhance intrusion detection with decoy artifacts.
Detecting Malicious npm Packages
mukul975
Safeguard your projects from npm package threats.
Building Detection Rules with Splunk SPL
mukul975
Create effective security detection rules in Splunk.
Emulating Cloud Attacks
mukul975
Validate cloud security detections with real attack simulations.
AWS GuardDuty Findings Automation
mukul975
Automate incident responses for AWS GuardDuty findings.
Detecting Container Threats with Falco
mukul975
Real-time detection of container runtime threats in Kubernetes and Docker.
Detecting DNS Exfiltration
mukul975
Identify covert data exfiltration via DNS queries.
Detecting Lateral Movement in Network
mukul975
Identify lateral movement techniques in enterprise networks.
Detecting Modbus Command Injection
mukul975
Monitor and detect Modbus command injection attacks.
Detecting S3 Data Exfiltration Attempts
mukul975
Identify unauthorized S3 data access and exfiltration.
Implementing Dragos Platform for OT Monitoring
mukul975
Deploy and configure Dragos for OT network security.
Detecting Compromised Cloud Credentials
mukul975
Identify and respond to cloud credential threats effectively.
Building Cloud SIEM with Sentinel
mukul975
Centralize threat detection across multi-cloud environments.
CloudTrail Log Analysis
mukul975
Enhance AWS security through log analysis and monitoring.
Detecting Cloud Threats with GuardDuty
mukul975
Automate AWS threat detection and response with GuardDuty.
Threat Detection
alirezarezvani
Proactively hunt for hidden threats in your environment.
Analyzing DNS Logs for Exfiltration
mukul975
Detect DNS-based threats to enhance cybersecurity.
Detecting Command and Control Over DNS
mukul975
Identify C2 traffic tunneled via DNS for enhanced security.
Analyzing Kubernetes Audit Logs
mukul975
Detect security issues in Kubernetes audit logs.
Detecting RDP Brute Force Attacks
mukul975
Identify and analyze RDP brute force attack patterns.
Scout Explorer
ruvnet
Intelligence gathering for code and dependencies.
Detecting AWS CloudTrail Anomalies
mukul975
Identify security threats in AWS CloudTrail logs.
