
Analyzing Dns Logs For Exfiltration
mukul975/Anthropic-Cybersecurity-Skills/skills/analyzing-dns-logs-for-exfiltration作者 mukul97554a798831d2266a3ca61ce68a7acb80b81160d57Apache-2.0收錄於 2026年10月9日更新於 2026年10月9日
Analyzes DNS query logs to detect data exfiltration via DNS tunneling, DGA domain communication, and covert C2 channels using entropy analysis, query volume anomalies, and subdomain length detection in SIEM platforms. Use when SOC teams need to identify DNS-based threats that bypass traditional network security controls.
僅公開檔案列表。將技能安裝到工作區後即可檢視檔案內容。
| 路徑 | 大小 | 類型 |
|---|---|---|
| LICENSE | 11 KB | text/plain |
| references/api-reference.md | 2.6 KB | text/markdown |
| scripts/agent.py | 8.5 KB | text/plain |
| SKILL.md | 11.3 KB | text/markdown |
來源與署名
來源:mukul975/Anthropic-Cybersecurity-Skills位於skills/analyzing-dns-logs-for-exfiltration提交54a7988
授權條款: Apache-2.0
內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。
更多來自 mukul975/Anthropic-Cybersecurity-Skills 的技能

Analyzing Network Packets With Scapy
mukul975
使用 Scapy 建構、嗅探與解析封包,分析 pcap 檔案並偵測異常網路流量。

Exploiting Sql Injection Vulnerabilities
mukul975
在授權滲透測試中識別並利用網頁應用程式的 SQL 注入漏洞。

Analyzing Network Traffic With Wireshark
mukul975
使用 Wireshark 與 tshark 擷取並分析網路封包,找出惡意流量並支援事件回應調查。

Analyzing Cloud Storage Access Patterns
mukul975
透過統計基準與異常偵測,辨識 AWS S3、GCS 和 Azure Blob 儲存體中的異常存取行為。

Analyzing Campaign Attribution Evidence
mukul975
運用鑽石模型與競爭假設分析評估網路行動證據,將攻擊歸因於特定威脅行為者。

Analyzing Certificate Transparency For Phishing
mukul975
透過 crt.sh 與 Certstream 監控憑證透明度日誌,偵測釣魚網域與仿冒憑證。
更多Security技能

Kyc Rules
anthropics
將公司的 KYC/AML 規則表套用於已解析的開戶紀錄,評定風險並給出處理路由。

Kyc Rules
anthropics
將公司的 KYC/AML 規則表套用於已解析的開戶紀錄,評定風險並給出處理路由。

Compliance Tracking
anthropics
追蹤合規要求、稽核準備情況,以及 SOC 2、ISO 27001、GDPR、HIPAA 和 PCI DSS 等框架的證據。

Google Cloud Scc Remediation
指導修復 Google Cloud Security Command Center 發現項目,提供需使用者核准的方案與參考手冊。

Google Cloud Recipe Auth
指導使用者、服務帳戶與工作負載如何對 Google Cloud 服務與 API 進行驗證與授權。

Dpop Adoption
指導為 Google OAuth 平台實作 OAuth 2.0 DPoP(RFC 9449)傳送方約束的更新權杖。