
Analyzing Cloud Storage Access Patterns
mukul975/Anthropic-Cybersecurity-Skills/skills/analyzing-cloud-storage-access-patterns作者 mukul97554a798831d2266a3ca61ce68a7acb80b81160d57Apache-2.0收录于 2026年10月9日更新于 2026年10月9日
Detect abnormal access in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCS audit logs, and Azure Storage Analytics for after-hours bulk downloads, new-IP access, and API-call spikes (e.g. GetObject) via statistical baselines and time-series anomaly detection. Use when investigating suspected cloud data exfiltration or building related detection rules.
仅公开文件列表。将技能安装到工作区后即可查看文件内容。
| 路径 | 大小 | 类型 |
|---|---|---|
| LICENSE | 11 KB | text/plain |
| references/api-reference.md | 1.5 KB | text/markdown |
| scripts/agent.py | 7.9 KB | text/plain |
| SKILL.md | 2.3 KB | text/markdown |
来源与署名
来源:mukul975/Anthropic-Cybersecurity-Skills位于skills/analyzing-cloud-storage-access-patterns提交54a7988
许可证: Apache-2.0
内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。
更多来自 mukul975/Anthropic-Cybersecurity-Skills 的技能

Exploiting Sql Injection Vulnerabilities
mukul975
在授权渗透测试中识别并利用 Web 应用中的 SQL 注入漏洞。

Analyzing Network Traffic With Wireshark
mukul975
使用 Wireshark 和 tshark 捕获并分析网络数据包,识别恶意流量并支持事件响应调查。

Analyzing Dns Logs For Exfiltration
mukul975
从 SIEM 中的 DNS 查询日志检测基于 DNS 的数据外泄、隧道、DGA 域名和隐蔽 C2 通道。

Analyzing Campaign Attribution Evidence
mukul975
使用钻石模型与竞争性假设分析评估网络战役证据,将攻击归因于特定威胁行为体。

Analyzing Certificate Transparency For Phishing
mukul975
通过 crt.sh 和 Certstream 监控证书透明度日志,检测钓鱼域名和仿冒证书。

Analyzing Browser Forensics With Hindsight
mukul975
使用 Hindsight 解析基于 Chromium 的浏览器配置文件数据库,重建用于调查的网络活动时间线。
更多Security技能

Kyc Rules
anthropics
将公司的 KYC/AML 规则表应用于已解析的开户记录,评定风险并给出处理路由。

Kyc Rules
anthropics
将公司的 KYC/AML 规则表应用于已解析的开户记录,评定风险并给出处理路由。

Compliance Tracking
anthropics
跟踪合规要求、审计准备情况以及 SOC 2、ISO 27001、GDPR、HIPAA 和 PCI DSS 等框架的证据。

Google Cloud Scc Remediation
指导修复 Google Cloud Security Command Center 发现项,提供需用户批准的方案与参考手册。

Google Cloud Recipe Auth
指导用户、服务账号和工作负载如何对 Google Cloud 服务与 API 进行身份验证和授权。

Dpop Adoption
指导为 Google OAuth 平台实现 OAuth 2.0 DPoP(RFC 9449)发送方约束刷新令牌。