Dnr Hunt

Proactive threat hunt over web/application logs — no alert in hand. Profiles the corpus, runs a hypothesis-driven hunt loop with a mandatory written ledger, confirms suspects in source, detonates a local PoC, and writes INCIDENTS.json + INCIDENT_REPORT.md. Use when asked to "hunt the logs", "find the campaign", "look for signs of compromise", or "run dnr-hunt". The no-alert entry to the detection & response track; /dnr-respond is the lead-in-hand entry.

anthropics 67ebb33 2 files · 20.3 KB Updated

File contents

anthropics/defending-code-reference-harness/tree/main/.claude/skills/dnr-hunt commit 67ebb33cca

Frequently asked questions

npx skillmds@latest add anthropics/dnr-hunt