Investigating Phishing Email Incident

Investigates phishing email incidents from initial user report through header analysis, URL/attachment detonation, impacted user identification, and containment actions using SOC tools like Splunk, Microsoft Defender, and sandbox analysis platforms. Use when a reported phishing email requires full incident investigation to determine scope and impact.

gabrielmoreira Updated 17 repo stars

File contents

gabrielmoreira/agent-skills-mirror/tree/main/mirrors/repos/galyarderlabs@galyarder-framework/integrations/antigravity/investigating-phishing-email-incident commit 3c5ace3bc8

Frequently asked questions

npx skillmds@latest add gabrielmoreira/investigating-phishing-email-incident-2