Hunting For Supply Chain Compromise

by mukul975 mukul975/hunting-for-supply-chain-compromise multi-file Updated


Hunt for supply chain compromise indicators including trojanized software updates, compromised dependencies, unauthorized code modifications, and tampered build artifacts.

SKILL.md

Related

  1. Detecting Mimikatz Execution Patterns · mukul975 bundle
    Hunt for Mimikatz execution using command-line patterns, LSASS access signatures, binary indicators, and in-memory detection of known modules.
    24.6k
    repo stars
  2. Hunting For Unusual Network Connections · mukul975 bundle
    Hunt for unusual network connections by analyzing outbound traffic patterns, rare destinations, non-standard ports, and anomalous connection frequencies from endpoints.
    24.6k
    repo stars
  3. Detecting Suspicious Powershell Execution · mukul975 bundle
    Detect suspicious PowerShell execution patterns including encoded commands, download cradles, AMSI bypass attempts, and constrained language mode evasion.
    24.6k
    repo stars
  4. Hunting For Scheduled Task Persistence · mukul975 bundle
    Hunt for adversary persistence via Windows Scheduled Tasks by analyzing task creation events, suspicious task actions, and unusual scheduling patterns.
    24.6k
    repo stars
  5. Detecting Privilege Escalation Attempts · mukul975 bundle
    Detect privilege escalation attempts including token manipulation, UAC bypass, unquoted service paths, kernel exploits, and sudo/doas abuse across Windows and Linux.
    24.6k
    repo stars
  6. Detecting Insider Threat Behaviors · mukul975 bundle
    Detect insider threat behavioral indicators including unusual data access, off-hours activity, mass file downloads, privilege abuse, and resignation-correlated data theft.
    24.6k
    repo stars

Frequently asked questions

How do I install the Hunting For Supply Chain Compromise skill?

Run npx skillmds add mukul975/hunting-for-supply-chain-compromise in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the Hunting For Supply Chain Compromise skill do?

Hunt for supply chain compromise indicators including trojanized software updates, compromised dependencies, unauthorized code modifications, and tampered build artifacts. It is listed under Security, Coding & Dev Tools, Incident Response on SkillMD.

Is Hunting For Supply Chain Compromise safe to use?

SkillMD's automated safety review verdict for this skill is PASS. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with Hunting For Supply Chain Compromise?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is Hunting For Supply Chain Compromise free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published Hunting For Supply Chain Compromise?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.