Analyzing Campaign Attribution Evidence

mukul975/Anthropic-Cybersecurity-Skills/skills/analyzing-campaign-attribution-evidence

作者 mukul97554a798831d2266a3ca61ce68a7acb80b81160d57Apache-2.0收錄於 2026年10月9日更新於 2026年10月9日

Systematically evaluate cyber-campaign evidence to attribute an operation to a threat actor, using the Diamond Model and Analysis of Competing Hypotheses (ACH) to weigh infrastructure overlaps, TTP consistency, malware code similarity, and timing/language artifacts into confidence-weighted attribution assessments. Use when an incident investigation needs a defensible attribution confidence level.

僅公開檔案列表。將技能安裝到工作區後即可檢視檔案內容。

路徑大小類型
assets/template.md1003 Btext/markdown
LICENSE11 KBtext/plain
references/api-reference.md3.1 KBtext/markdown
references/standards.md1.1 KBtext/markdown
references/workflows.md1.4 KBtext/markdown
scripts/agent.py9.9 KBtext/plain
scripts/process.py5.9 KBtext/plain
SKILL.md9 KBtext/markdown

來源與署名

來源:mukul975/Anthropic-Cybersecurity-Skills位於skills/analyzing-campaign-attribution-evidence提交54a7988

授權條款: Apache-2.0

內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。

檢舉或申請下架