performing-adversary-in-the-middle-phishing-detection

mukul975/performing-adversary-in-the-middle-phishing-detection · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks that use reverse proxy kits like EvilProxy, Evilginx, and Tycoon 2FA to bypass MFA and steal session tokens.

SKILL.md

Files

This skill is a package of 8 files. Install with the command above, or download the folder.

Related

  1. email-security · zhaoxuya520 bundle
    Analyzes email security including phishing dissection, SPF/DKIM/DMARC authentication checks, BEC fraud patterns, and OAuth token abuse research for authorized reviews.
    12.8k
    repo stars
  2. performing-initial-access-with-evilginx3 · mukul975 bundle
    Conduct authorized red team initial access using EvilGinx3 adversary-in-the-middle phishing to capture session tokens and bypass multi-factor authentication.
    24.6k
    repo stars
  3. deobfuscating-javascript-malware · mukul975 bundle
    Deobfuscates malicious JavaScript code used in web-based attacks, phishing pages, and dropper scripts by reversing encoding layers, eval chains, string manipulation, and control flow obfuscation to reveal the original malicious logic.
    24.6k
    repo stars
  4. analyzing-malicious-url-with-urlscan · mukul975 bundle
    Investigate phishing URLs, credential harvesting pages, and malicious redirects using URLScan.io's safe browsing environment and API.
    24.6k
    repo stars
  5. analyzing-indicators-of-compromise · mukul975 bundle
    Triages and enriches indicators of compromise (IPs, domains, file hashes, URLs, email artifacts) from phishing emails, security alerts, or threat feeds, assigning confidence scores and dispositions using VirusTotal, AbuseIPDB, MalwareBazaar, and MISP.
    24.6k
    repo stars
  6. performing-brand-monitoring-for-impersonation · mukul975 bundle
    Detect brand impersonation attacks across domains, social media, mobile apps, and dark web channels to identify phishing campaigns, fake sites, and unauthorized brand usage.
    24.6k
    repo stars

Frequently asked questions

How do I install the performing-adversary-in-the-middle-phishing-detection skill?

Run npx skillmds add mukul975/performing-adversary-in-the-middle-phishing-detection in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the performing-adversary-in-the-middle-phishing-detection skill do?

Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks that use reverse proxy kits like EvilProxy, Evilginx, and Tycoon 2FA to bypass MFA and steal session tokens. It is listed under Security, Coding & Dev Tools, Incident Response, Vulnerability Scanning on SkillMD.

Is performing-adversary-in-the-middle-phishing-detection safe to use?

SkillMD's automated safety review verdict for this skill is PASS. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts, reads secrets. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with performing-adversary-in-the-middle-phishing-detection?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is performing-adversary-in-the-middle-phishing-detection free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published performing-adversary-in-the-middle-phishing-detection?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.