Analyzing Network Traffic For Incidents

Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Uses Wireshark, Zeek, and NetFlow analysis techniques. Activates for requests involving network traffic analysis, packet capture investigation, PCAP analysis, network forensics, C2 traffic detection, or exfiltration detection.

26zl Updated

File contents

26zl/cybersec-toolkit/tree/main/.claude/skills/analyzing-network-traffic-for-incidents commit feb9845c08

Frequently asked questions

npx skillmds@latest add 26zl/analyzing-network-traffic-for-incidents