
Analyzing Campaign Attribution Evidence
mukul975/Anthropic-Cybersecurity-Skills/skills/analyzing-campaign-attribution-evidence作者 mukul97554a798831d2266a3ca61ce68a7acb80b81160d57Apache-2.034K 個星標收錄於 2026年10月9日更新於 2026年10月9日儲存庫5 週前更新
Systematically evaluate cyber-campaign evidence to attribute an operation to a threat actor, using the Diamond Model and Analysis of Competing Hypotheses (ACH) to weigh infrastructure overlaps, TTP consistency, malware code similarity, and timing/language artifacts into confidence-weighted attribution assessments. Use when an incident investigation needs a defensible attribution confidence level.
- 54a798831d2266a3ca61ce68a7acb80b81160d57目前提交 54a7988發布於 2026年10月9日
來源與署名
來源:mukul975/Anthropic-Cybersecurity-Skills位於skills/analyzing-campaign-attribution-evidence提交54a7988
授權條款: Apache-2.0
內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。
更多來自 mukul975/Anthropic-Cybersecurity-Skills 的技能

Analyzing Network Packets With Scapy
mukul975
使用 Scapy 建構、嗅探與解析封包,分析 pcap 檔案並偵測異常網路流量。

Exploiting Sql Injection Vulnerabilities
mukul975
在授權滲透測試中識別並利用網頁應用程式的 SQL 注入漏洞。

Analyzing Network Traffic With Wireshark
mukul975
使用 Wireshark 與 tshark 擷取並分析網路封包,找出惡意流量並支援事件回應調查。

Analyzing Dns Logs For Exfiltration
mukul975
從 SIEM 中的 DNS 查詢日誌偵測以 DNS 為基礎的資料外洩、通道、DGA 網域與隱蔽 C2 通道。

Analyzing Cloud Storage Access Patterns
mukul975
透過統計基準與異常偵測,辨識 AWS S3、GCS 和 Azure Blob 儲存體中的異常存取行為。

Analyzing Certificate Transparency For Phishing
mukul975
透過 crt.sh 與 Certstream 監控憑證透明度日誌,偵測釣魚網域與仿冒憑證。
更多Security技能

Memory Leak Audit
microsoft
審查程式碼中的記憶體洩漏與可處置物件問題,涵蓋事件監聽器、生命週期回呼與處置模式。

Kyc Rules
anthropics
將公司的 KYC/AML 規則表套用於已解析的開戶紀錄,評定風險並給出處理路由。

Kyc Rules
anthropics
將公司的 KYC/AML 規則表套用於已解析的開戶紀錄,評定風險並給出處理路由。

Compliance Tracking
anthropics
追蹤合規要求、稽核準備情況,以及 SOC 2、ISO 27001、GDPR、HIPAA 和 PCI DSS 等框架的證據。

Google Cloud Scc Remediation
指導修復 Google Cloud Security Command Center 發現項目,提供需使用者核准的方案與參考手冊。

Google Cloud Recipe Auth
指導使用者、服務帳戶與工作負載如何對 Google Cloud 服務與 API 進行驗證與授權。