Detecting Fileless Malware Techniques

Detects and analyzes fileless malware that operates entirely in memory using PowerShell, WMI, .NET reflection, registry-resident payloads, and living-off-the-land binaries (LOLBins) without writing traditional executable files to disk. Activates for requests involving fileless threat detection, in-memory malware investigation, LOLBin abuse analysis, or WMI persistence examination.

26zl df48fa4 4 files · 37.0 KB Updated

File contents

26zl/cybersec-toolkit/tree/main/.claude/skills/detecting-fileless-malware-techniques commit df48fa4149

Frequently asked questions

npx skillmds@latest add 26zl/detecting-fileless-malware-techniques