implementing-threat-modeling-with-mitre-attack

mukul975/implementing-threat-modeling-with-mitre-attack · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Map adversary TTPs against organizational assets using the MITRE ATT&CK framework, assess detection coverage gaps, and prioritize defensive investments.

SKILL.md

Files

This skill is a package of 4 files. Install with the command above, or download the folder.

  • 📄SKILL.md entry
  • 📁references
  • 📄api-reference.md 2.2 KB
  • 📁scripts
  • ⚙️agent.py 8.1 KB
  • 📄LICENSE 11.0 KB

Related

  1. analyzing-apt-group-with-mitre-navigator · mukul975 bundle
    Query MITRE ATT&CK data programmatically, map APT group TTPs to Navigator layers, create multi-layer overlays for gap analysis, and generate actionable intelligence reports for detection engineering teams.
    24.6k
    repo stars
  2. mapping-mitre-attack-techniques · mukul975 bundle
    Maps observed adversary behaviors, security alerts, and detection rules to MITRE ATT&CK techniques and sub-techniques to quantify detection coverage and guide control prioritization.
    24.6k
    repo stars
  3. performing-alert-triage-with-elastic-siem · mukul975 bundle
    Perform systematic alert triage in Elastic Security SIEM to rapidly classify, prioritize, and investigate security alerts for SOC operations.
    24.6k
    repo stars
  4. implementing-mitre-attack-coverage-mapping · mukul975 bundle
    Map MITRE ATT&CK coverage to identify detection gaps, prioritize rule development, and measure SOC detection maturity against adversary techniques.
    24.6k
    repo stars
  5. security-threat-intelligence · drnabeelkhan bundle
    Routes security, compliance, and threat-intelligence tasks to specialized sub-skills for threat modeling, penetration testing, incident response, and vulnerability scanning.
    2
    repo stars
  6. analyzing-windows-event-logs-in-splunk · mukul975 bundle
    Detect authentication attacks, privilege escalation, persistence mechanisms, and lateral movement by analyzing Windows Security, System, and Sysmon event logs in Splunk using SPL queries mapped to MITRE ATT&CK techniques.
    24.6k
    repo stars

Frequently asked questions

How do I install the implementing-threat-modeling-with-mitre-attack skill?

Run npx skillmds add mukul975/implementing-threat-modeling-with-mitre-attack in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the implementing-threat-modeling-with-mitre-attack skill do?

Map adversary TTPs against organizational assets using the MITRE ATT&CK framework, assess detection coverage gaps, and prioritize defensive investments. It is listed under Security, Incident Response, Vulnerability Scanning on SkillMD.

Is implementing-threat-modeling-with-mitre-attack safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts, makes network calls. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with implementing-threat-modeling-with-mitre-attack?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is implementing-threat-modeling-with-mitre-attack free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published implementing-threat-modeling-with-mitre-attack?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.