热门技能

当前社区里最受关注、增长最快的技能。

显示 25-48 / 共 196 个技能
mukul975

analyzing-packed-malware-with-upx-unpacker

mukul975

'Identifies and unpacks UPX-packed and other packed malware samples to expose the original executable code for

调试 3.1万 5个月前
mukul975

analyzing-certificate-transparency-for-phishing

mukul975

Monitor Certificate Transparency logs using crt.sh and Certstream to detect phishing domains, lookalike certificates,

分析 3.1万 5个月前
mukul975

analyzing-malware-sandbox-evasion-techniques

mukul975

Detect sandbox evasion techniques in malware samples by analyzing timing checks, VM artifact queries, user interaction

分析 3.1万 5个月前
mukul975

analyzing-api-gateway-access-logs

mukul975

'Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect BOLA/IDOR attacks, rate limit bypass,

API 开发 3.1万 5个月前
mukul975

analyzing-windows-registry-for-artifacts

mukul975

Extract and analyze Windows Registry hives to uncover user activity, installed software, autostart entries, and evidence of system compromise.

代码评审 3.1万 6个月前
mukul975

analyzing-ios-app-security-with-objection

mukul975

'Performs runtime mobile security exploration of iOS applications using Objection, a Frida-powered toolkit that

调试 3.1万 5个月前
mukul975

analyzing-slack-space-and-file-system-artifacts

mukul975

Examine file system slack space, MFT entries, USN journal, and alternate data streams to recover hidden data and reconstruct file activity on NTFS volumes.

代码评审 3.1万 6个月前
mukul975

analyzing-windows-lnk-files-for-artifacts

mukul975

Parse Windows LNK shortcut files to extract target paths, timestamps, volume information, and machine identifiers for forensic timeline reconstruction.

CLI 工具 3.1万 6个月前
mukul975

auditing-aws-s3-bucket-permissions

mukul975

Systematically audit AWS S3 bucket permissions to identify publicly accessible buckets, overly permissive ACLs, misconfigured bucket policies, and missing encryption settings using AWS CLI, S3audit, and Prowler to enforce least-privilege data access controls.

云服务 3.1万 6个月前
mukul975

analyzing-android-malware-with-apktool

mukul975

Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source

API 开发 3.1万 5个月前
mukul975

analyzing-command-and-control-communication

mukul975

Analyzes malware command-and-control (C2) communication protocols to understand beacon patterns, command structures, data encoding, and infrastructure. Covers HTTP, HTTPS, DNS, and custom protocol C2 analysis for detection development and threat intelligence. Activates for requests involving C2 analysis, beacon detection, C2 protocol reverse engineering, or command-and-control infrastructure mapping.

API 开发 3.1万 6个月前
mukul975

analyzing-browser-forensics-with-hindsight

mukul975

Analyze Chromium-based browser artifacts using Hindsight to extract browsing history, downloads, cookies, cached

安全 3.1万 5个月前
mukul975

analyzing-ethereum-smart-contract-vulnerabilities

mukul975

Perform static and symbolic analysis of Solidity smart contracts using Slither and Mythril to detect reentrancy,

Web3 与加密 3.1万 5个月前
mukul975

analyzing-malware-persistence-with-autoruns

mukul975

Use Sysinternals Autoruns to systematically identify and analyze malware persistence mechanisms across registry

自动化 3.1万 5个月前
mukul975

analyzing-campaign-attribution-evidence

mukul975

Campaign attribution analysis involves systematically evaluating evidence to determine which threat actor or

分析 3.1万 5个月前
mukul975

analyzing-dns-logs-for-exfiltration

mukul975

'Analyzes DNS query logs to detect data exfiltration via DNS tunneling, DGA domain communication, and covert

文档生成 3.1万 5个月前
mukul975

analyzing-azure-activity-logs-for-threats

mukul975

'Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrative

云服务 3.1万 4个月前
mukul975

analyzing-linux-elf-malware

mukul975

Analyzes malicious Linux ELF (Executable and Linkable Format) binaries including botnets, cryptominers, ransomware, and rootkits targeting Linux servers, containers, and cloud infrastructure. Covers static analysis, dynamic tracing, and reverse engineering of x86_64 and ARM ELF samples. Activates for requests involving Linux malware analysis, ELF binary investigation, Linux server compromise assessment, or container malware analysis.

代码评审 3.1万 6个月前
mukul975

analyzing-threat-intelligence-feeds

mukul975

Analyzes structured and unstructured threat intelligence feeds to extract actionable indicators, adversary tactics, and campaign context. Use when ingesting commercial or open-source CTI feeds, evaluating feed quality, normalizing data into STIX 2.1 format, or enriching existing IOCs with campaign attribution. Activates for requests involving ThreatConnect, Recorded Future, Mandiant Advantage, MISP, AlienVault OTX, or automated feed aggregation pipelines.

API 开发 3.1万 6个月前
mukul975

auditing-azure-active-directory-configuration

mukul975

Auditing Microsoft Entra ID (Azure Active Directory) configuration to identify risky authentication policies, overly permissive role assignments, stale accounts, conditional access gaps, and guest user risks using AzureAD PowerShell, Microsoft Graph API, and ScoutSuite.

分析 3.1万 6个月前
mukul975

analyzing-apt-group-with-mitre-navigator

mukul975

Analyze advanced persistent threat (APT) group techniques using MITRE ATT&CK Navigator to create layered heatmaps

分析 3.1万 5个月前
mukul975

analyzing-macro-malware-in-office-documents

mukul975

'Analyzes malicious VBA macros embedded in Microsoft Office documents (Word, Excel, PowerPoint) to identify download

调试 3.1万 5个月前
mukul975

analyzing-linux-system-artifacts

mukul975

Examine Linux system artifacts including auth logs, cron jobs, shell history, and system configuration to uncover

文件操作 3.1万 5个月前
mukul975

analyzing-bootkit-and-rootkit-samples

mukul975

Analyzes bootkit and advanced rootkit malware that infects the Master Boot Record (MBR), Volume Boot Record (VBR), or UEFI firmware to gain persistence below the operating system. Covers boot sector analysis, UEFI module inspection, and anti-rootkit detection techniques. Activates for requests involving bootkit analysis, MBR malware investigation, UEFI persistence analysis, or pre-OS malware detection.

代码评审 3.1万 6个月前