Detects ransomware encryption activity in real time using entropy analysis, file system I/O monitoring, and
Detects early-stage ransomware indicators in network traffic before encryption begins, including initial access
Kullanıcının belirttiği anahtar kelimeleri ve sayısal hedefleri kullanarak yaratıcı ve akılda kalıcı domain isimleri listeler.
Kullanıcının belirttiği anahtar kelimeleri ve sayısal hedefleri kullanarak yaratıcı ve akılda kalıcı domain isimleri listeler.
Encoding and decoding — JavaScript deobfuscation, XOR analysis, barcode/QR scanning, hash/crypto operations, and general-purpose transform pipelines.
Systematically remove malware, backdoors, and attacker persistence mechanisms from infected systems while ensuring
Extract embedded configuration from Agent Tesla RAT samples including SMTP/FTP/Telegram exfiltration credentials,
Extracts indicators of compromise (IOCs) from malware samples including file hashes, network indicators (IPs,
Cyber-Vorfall-Sofortmassnahmen Ransomware Datenleck Hack. Meldepflichten 72 Stunden Art 33 DSGVO BSIG NIS2UmsuCG kritische Infrastruktur.
Cyber-Versicherung bei Ransomware mit Sanktions-Risiko OFAC EU-VO 833/2014 VO 269/2014 Russland-Sanktionen. Deckungs-Abwehr Versicherer bei Loesegeld-Zahlung.
Use when designing malware and content scanning for files uploaded to Salesforce (Files, Attachments, ContentVersion) — external scanning service callouts, quarantine patterns,…
Gesundheitsdatenpanne Klinik: moderner Medizinrechts-Skill für Fehlversand Arztbrief, Portalzugriff, Ransomware, Meldung, Benachrichtigung und Schadensersatz:…
Quantitative trading expertise for DeFi and crypto derivatives. Use when building trading strategies, signals, risk management.
Baseline the EFI System Partition and hunt malicious EFI binaries (ESPecter, BlackLotus, Bootkitty, Glupteba) by mounting the ESP, hashing and verifying boot loaders, scanning…
Supply-chain malware infection scanner. IoC-based local scan + safe eradication for npm/PyPI worm campaigns (Mini Shai-Hulud 1st/2nd, S1ngularity, lottie-player).
Deep network-layer security analysis for Infrastructure-as-Code. Detects public exposure, unrestricted ingress/egress, internet-facing workloads, exposed management ports, flat…
Deep storage and data security analysis for AWS Infrastructure-as-Code. Detects unencrypted data stores, public S3 buckets, missing backup/DR posture, dangerous access patterns,…
Configures Windows Group Policy Objects (GPO) to prevent ransomware execution and limit its spread. Implements
Email sandboxing detonates suspicious attachments and URLs in isolated environments to detect zero-day malware
Configure Google Workspace advanced phishing and malware protection settings including pre-delivery scanning,
Deploys canary files, honeypot shares, and decoy systems to detect ransomware activity at the earliest possible
Implements immutable backup strategy using restic with S3-compatible storage and object lock for ransomware-resistant
Deploy and configure Proofpoint Email Protection as a secure email gateway to detect and block phishing, malware,
Designs and implements a ransomware-resilient backup strategy following the 3-2-1-1-0 methodology (3 copies,
Detects and exploits ransomware kill switch mechanisms including mutex-based execution guards, domain-based
Prüft IT-Sicherheit, Forschungsdaten, Ransomware, Hochschul-CERT und Verantwortlichkeiten im Hochschulrecht Länder.
Detects and removes infostealer malware (credential stealers, data exfiltrators) via full-system file search, cryptographic hashing, and public threat-intelligence cross-checks…
Identify, collect, and analyze ransomware attack artifacts to determine the variant, initial access vector, encryption
Android APK decompiler that converts DEX bytecode to readable Java source code. Use when you need to decompile APK files, analyze app logic, search for vulnerabilities, find…
AI-powered JavaScript reverse engineering tool. 资深JavaScript逆向工程专家助手。Actions: collect, search, deobfuscate, understand, summarize, detect-crypto, browser, debugger, breakpoint,…
KAŞİF'in el-kitabı: DİVAN'ın işine yarayacak konularda (_agents/kasif/konular.md — Sultan-ayarlı) web'i tarayıp ham-malzeme (fikir/fırsat) toplar ve YALNIZ bulgu-havuzuna yazar…
Review Microsoft 365 backup posture and business continuity readiness — Microsoft 365 Backup coverage for Exchange Online, SharePoint, and OneDrive; retention-versus-backup…
Malware analysis, file reputation, sandbox detonation, and hash lookup. Use when the user mentions: malware analysis, virus scan, file hash, sandbox, malicious file, VirusTotal.
Use when reverse-engineering or detecting malware — static triage + capa/YARA-X, emulation/DBI/.NET unpacking, dynamic/fileless/Volatility 3 memory analysis, C2 config extraction…
Professional malware analysis workflow for PE executables and suspicious files. Triggers on file uploads with requests like "analyze this malware", "analyze this sample", "what…
Expert malware analyst specializing in defensive malware research, threat intelligence, and incident response.
Recognize and educate about malware distribution disguised as legitimate security software
Analyze malware samples for forensic investigation. Use when investigating malware infections, determining malware capabilities, extracting IOCs, or understanding attack…
Konfiguracja szyfrowanego backupu Google Workspace dla kancelarii prawnych przez gogcli + age + prywatne repo Git. Używaj gdy klient-kancelaria pyta o RODO art.
Pola lengkap integrasi Midtrans payment gateway untuk Marketiv Flutter app. Gunakan skill ini SETIAP KALI user meminta kode terkait: pembayaran campaign, pembayaran rate card…
Guard agent for AI agents — scan emails and webpages for prompt injection, jailbreak, phishing, and malware.
Monitors dark web forums, marketplaces, paste sites, and ransomware leak sites for mentions of organizational
Black-box binary analysis with Ghidra/IDA/Binary Ninja for in-scope closed-source targets. Use when performing defensive security research, vulnerability analysis, or coordinated…
Mobile (Android + iOS) application penetration testing methodology. Covers static analysis (apktool/jadx for Android, class-dump/Hopper/IDA for iOS), dynamic instrumentation with…
Search, score, scan, and import agent skills from GitHub repositories that contain SKILL.md, CLAUDE.md, .cursorrules, and similar agent skill files.
Malware analizi — triage, static analiz, dynamic sandbox, IOC extract, YARA imza yazimi advisory. Triggers on malware analiz, malware triage, sandbox, Cuckoo, IDA, Ghidra, dynamic…
Deploy and operate CAPEv2 sandbox for automated malware analysis with behavioral monitoring, payload extraction,
Performs interactive dynamic malware analysis using the ANY.RUN cloud sandbox to observe real-time execution
Analyzes firmware images for embedded malware, backdoors, and unauthorized modifications targeting routers,
Performs comprehensive iOS application security assessments using Frida for dynamic instrumentation, Objection
Enrich malware file hashes using the VirusTotal API to retrieve detection rates, behavioral analysis, YARA matches,
Malware IOC extraction is the process of analyzing malicious software to identify actionable indicators of compromise
Systematically investigate all persistence mechanisms on Windows and Linux systems to identify how malware survives
Performs rapid malware triage and classification using YARA rules to match file patterns, strings, byte sequences,
Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware
Executes a structured ransomware incident response from initial detection through containment, forensic analysis,
Plans and facilitates tabletop exercises simulating ransomware incidents to test organizational readiness, decision-making,
Performs static analysis of Windows PE (Portable Executable) malware samples using PEStudio to examine file
Use YARA pattern-matching rules to hunt for malware, suspicious files, and indicators of compromise across filesystems
Develop precise YARA rules for malware detection by identifying unique byte patterns, strings, and behavioral