Investigating Phishing Email Incident

Use when investigates phishing email incidents from initial user report through header analysis, URL/attachment detonation, impacted user identification, and containment actions using SOC tools like Splunk, Microsoft Defender, and sandbox analysis platforms. Use when a reported phishing email requires full incident investigation to determine scope and impact.

oyi77 d27ecee 3.8 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/investigating-phishing-email-incident commit d27eceee83

Frequently asked questions

npx skillmds add oyi77/investigating-phishing-email-incident