performing-cloud-storage-forensic-acquisition

mukul975/performing-cloud-storage-forensic-acquisition · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Perform forensic acquisition and analysis of cloud storage services including Google Drive, OneDrive, Dropbox, and Box by collecting both API-based remote data and local sync client artifacts from endpoint devices.

SKILL.md

Files

This skill is a package of 8 files. Install with the command above, or download the folder.

Related

  1. detecting-cryptomining-in-cloud · mukul975 bundle
    Detect and respond to unauthorized cryptocurrency mining in AWS and Azure environments using cost anomalies, compute utilization, network traffic analysis, and runtime monitoring.
    24.6k
    repo stars
  2. detecting-azure-lateral-movement · mukul975 bundle
    Detect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure Sentinel KQL hunting queries, and sign-in anomaly correlation to identify privilege escalation, token theft, and cross-tenant pivoting.
    24.6k
    repo stars
  3. building-cloud-siem-with-sentinel · mukul975 bundle
    Deploy Microsoft Sentinel as a cloud-native SIEM and SOAR platform for centralized security operations across AWS, Azure, and GCP.
    24.6k
    repo stars
  4. detecting-cloud-threats-with-guardduty · mukul975 bundle
    Deploy and operationalize Amazon GuardDuty for continuous threat detection across AWS accounts and workloads, including enabling protection plans, interpreting findings, and building automated response workflows.
    24.6k
    repo stars
  5. analyzing-cloud-storage-access-patterns · mukul975 bundle
    Detect abnormal access patterns in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCS audit logs, and Azure Storage Analytics. Identifies after-hours bulk downloads, access from new IP addresses, unusual API calls, and potential data exfiltration using statistical baselines.
    24.6k
    repo stars
  6. detecting-azure-service-principal-abuse · mukul975 bundle
    Detect and investigate Azure service principal abuse including privilege escalation, credential compromise, admin consent bypass, and unauthorized enumeration in Microsoft Entra ID environments.
    24.6k
    repo stars

Frequently asked questions

How do I install the performing-cloud-storage-forensic-acquisition skill?

Run npx skillmds add mukul975/performing-cloud-storage-forensic-acquisition in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the performing-cloud-storage-forensic-acquisition skill do?

Perform forensic acquisition and analysis of cloud storage services including Google Drive, OneDrive, Dropbox, and Box by collecting both API-based remote data and local sync client artifacts from endpoint devices. It is listed under Security, DevOps & Infra, Cloud Platforms, Incident Response on SkillMD.

Is performing-cloud-storage-forensic-acquisition safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts, makes network calls. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with performing-cloud-storage-forensic-acquisition?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is performing-cloud-storage-forensic-acquisition free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published performing-cloud-storage-forensic-acquisition?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.