all publishers

mukul975

@mukul975 source repo

828 published skills · page 1 of 9

  1. ▌
    Wordlists 2 · mukul975
    SecLists path map, hashcat rules, CeWL usage, and custom wordlist generation for all attack categories
    24.6k repo stars
  2. ▌
    Ad Attacks 2 · mukul975
    Active Directory attack reference — BloodHound Cypher queries, Kerberos attack decision tree, ACE/ACL abuse, ADCS ESC1-8, and AD misconfig checklist
    24.6k repo stars
  3. ▌
    Exploit DB 2 · mukul975
    Exploit-DB and searchsploit reference — EDB→Metasploit module mappings, PoC reliability rubric, CVSS tier quick reference, and searchsploit usage patterns
    24.6k repo stars
  4. ▌
    Mitre Attack 2 · mukul975
    MITRE ATT&CK framework reference — tactics, techniques, and tool-to-TTP mappings for pentest documentation and detection rule writing
    24.6k repo stars
  5. ▌
    Report Templates 2 · mukul975
    CVSS 3.1 vector examples, executive summary template, full technical finding template, and remediation language bank for pentest reports
    24.6k repo stars
  6. ▌
    Wordlists · mukul975
    SecLists path map, hashcat rules, CeWL usage, and custom wordlist generation for all attack categories
    24.6k repo stars
  7. ▌
    Ad Attacks · mukul975
    Active Directory attack reference — BloodHound Cypher queries, Kerberos attack decision tree, ACE/ACL abuse, ADCS ESC1-8, and AD misconfig checklist
    24.6k repo stars
  8. ▌
    Exploit DB · mukul975
    Exploit-DB and searchsploit reference — EDB→Metasploit module mappings, PoC reliability rubric, CVSS tier quick reference, and searchsploit usage patterns
    24.6k repo stars
  9. ▌
    Mitre Attack · mukul975
    MITRE ATT&CK framework reference — tactics, techniques, and tool-to-TTP mappings for pentest documentation and detection rule writing
    24.6k repo stars
  10. ▌
    Report Templates · mukul975
    CVSS 3.1 vector examples, executive summary template, full technical finding template, and remediation language bank for pentest reports
    24.6k repo stars
  11. ▌
    Conducting Gdpr Compliance Assessment · mukul975 bundle
    Conduct comprehensive GDPR compliance assessments by evaluating data processing activities against EU Regulation 2016/679, including Article 30 records of processing, lawful basis validation, data subject rights implementation, Data Protection Impact Assessments (DPIAs) under Article 35, breach notification procedures, international transfer safeguards (SCCs, adequacy decisions), and technical/organizational measures under Article 32. Use when processing personal data of EU residents, preparing for supervisory authority audits, implementing privacy-by-design for new systems, scoping compliance gaps for M&A due diligence, assessing third-party processors, or responding to data subject access requests at scale. Incorporates 2026 guidance from ICO, EDPB, and post-Data (Use and Access) Act 2025 UK-GDPR considerations. Do not use for implementing specific Article 32 controls — use implementing-gdpr-data-protection-controls; or for DSAR automation — use implementing-gdpr-data-subject-access-request.
    24.6k repo stars
  12. ▌
    Implementing Deception Based Detection With Canarytoken · mukul975 bundle
    Deploy and monitor Canary Tokens via the Thinkst Canary API for deception-based breach detection using web bug tokens, DNS tokens, document tokens, and AWS key tokens.
    24.6k repo stars
  13. ▌
    Implementing Data Loss Prevention With Microsoft Purview · mukul975 bundle
    Configures sensitivity labels, DLP policies, and endpoint data protection rules in Microsoft Purview to safeguard sensitive information across Exchange, SharePoint, OneDrive, Teams, and endpoints.
    24.6k repo stars
  14. ▌
    Implementing Epss Score For Vulnerability Prioritization · mukul975 bundle
    Integrate FIRST's Exploit Prediction Scoring System (EPSS) API to prioritize vulnerability remediation based on real-world exploitation probability within 30 days.
    24.6k repo stars
  15. ▌
    Implementing Container Image Minimal Base With Distroless · mukul975 bundle
    Reduce container attack surface by building application images on Google distroless base images that contain only the application runtime with no shell, package manager, or unnecessary OS utilities.
    24.6k repo stars
  16. ▌
    Performing Cloud Native Threat Hunting With AWS Detective · mukul975 bundle
    Hunt for threats in AWS environments using Detective behavior graphs, entity investigation timelines, GuardDuty finding correlation, and automated entity profiling across IAM users, EC2 instances, and IP addresses.
    24.6k repo stars
  17. ▌
    Performing Windows Artifact Analysis With Eric Zimmerman Too · mukul975 bundle
    Parse and analyze Windows forensic artifacts including MFT, registry hives, prefetch files, event logs, LNK files, and jump lists using Eric Zimmerman's EZ Tools suite and KAPE.
    24.6k repo stars
  18. ▌
    Detecting Dns Exfiltration With Dns Query Analysis · mukul975 bundle
    Detect data exfiltration through DNS tunneling by analyzing query entropy, subdomain length, query volume, TXT record abuse, and response payload sizes using passive DNS monitoring.
    24.6k repo stars
  19. ▌
    Implementing Network Access Control With Cisco Ise · mukul975 bundle
    Deploy Cisco Identity Services Engine for 802.1X wired and wireless authentication, MAC Authentication Bypass, posture assessment, and dynamic VLAN assignment for network access control.
    24.6k repo stars
  20. ▌
    Implementing Policy As Code With Open Policy Agent · mukul975 bundle
    Enforce organizational security policies across Kubernetes clusters and CI/CD pipelines using Open Policy Agent (OPA) and Gatekeeper, including writing Rego policies, deploying admission controllers, and testing policies locally.
    24.6k repo stars
  21. ▌
    Implementing Zero Standing Privilege With Cyberark · mukul975 bundle
    Deploy CyberArk Secure Cloud Access to eliminate standing privileges in hybrid and multi-cloud environments using just-in-time access with time, entitlement, and approval controls.
    24.6k repo stars
  22. ▌
    Performing Log Analysis For Forensic Investigation · mukul975 bundle
    Collect, parse, and correlate system, application, and security logs to reconstruct events and establish timelines during forensic investigations.
    24.6k repo stars
  23. ▌
    Performing Malware Hash Enrichment With Virustotal · mukul975 bundle
    Enrich malware file hashes using the VirusTotal API to retrieve detection rates, behavioral analysis, YARA matches, and contextual threat intelligence for incident triage and IOC validation.
    24.6k repo stars
  24. ▌
    Performing Mobile Device Forensics With Cellebrite · mukul975 bundle
    Acquire and analyze mobile device data using Cellebrite UFED and open-source tools to extract communications, location data, and application artifacts.
    24.6k repo stars
  25. ▌
    Analyzing Memory Forensics With Lime And Volatility · mukul975 bundle
    Acquires Linux memory using the LiME kernel module and analyzes the image with Volatility 3 to extract processes, network connections, bash history, kernel modules, and injected code for incident response.
    24.6k repo stars
  26. ▌
    Implementing API Abuse Detection With Rate Limiting · mukul975 bundle
    Implement API abuse detection using token bucket, sliding window, and adaptive rate limiting algorithms to prevent DDoS, brute force, and credential stuffing attacks.
    24.6k repo stars
  27. ▌
    Implementing Cloud Vulnerability Posture Management · mukul975 bundle
    Continuously monitor cloud infrastructure for misconfigurations, compliance violations, and security risks using AWS Security Hub, Azure Defender for Cloud, and open-source tools like Prowler and ScoutSuite.
    24.6k repo stars
  28. ▌
    Implementing Container Network Policies With Calico · mukul975 bundle
    Enforce Kubernetes network segmentation using Calico CNI network policies and global network policies to control pod-to-pod traffic, restrict egress, and implement zero-trust microsegmentation.
    24.6k repo stars
  29. ▌
    Implementing Passwordless Auth With Microsoft Entra · mukul975 bundle
    Deploys passwordless authentication using Microsoft Entra ID with FIDO2 security keys, Windows Hello for Business, Microsoft Authenticator passkeys, and certificate-based authentication to eliminate password-based attacks.
    24.6k repo stars
  30. ▌
    Implementing Passwordless Authentication With Fido2 · mukul975 bundle
    Deploy FIDO2/WebAuthn passwordless authentication using security keys and platform authenticators, covering WebAuthn API integration, FIDO2 server configuration, passkey enrollment, biometric authentication, and migration from password-based systems aligned with NIST SP 800-63B AAL3.
    24.6k repo stars
  31. ▌
    Implementing Zero Trust Network Access With Zscaler · mukul975 bundle
    Deploy Zero Trust Network Access using Zscaler Private Access (ZPA) to replace traditional VPN with identity-based, context-aware access to private applications through the Zscaler Zero Trust Exchange.
    24.6k repo stars
  32. ▌
    Performing AWS Account Enumeration With Scout Suite · mukul975 bundle
    Enumerate AWS resources and identify misconfigurations using ScoutSuite to generate interactive security reports.
    24.6k repo stars
  33. ▌
    Performing Kubernetes Cis Benchmark With Kube Bench · mukul975 bundle
    Audit Kubernetes cluster security posture against CIS benchmarks using kube-bench with automated checks for control plane, worker nodes, and RBAC.
    24.6k repo stars
  34. ▌
    Performing Ot Vulnerability Assessment With Claroty · mukul975 bundle
    Correlates OT asset inventory with ICS-CERT advisories and CVE data to identify, prioritize, and track vulnerabilities in operational technology environments using Claroty xDome.
    24.6k repo stars
  35. ▌
    Performing Threat Modeling With Owasp Threat Dragon · mukul975 bundle
    Create data flow diagrams, identify threats using STRIDE and LINDDUN methodologies, and generate threat model reports for secure design review with OWASP Threat Dragon.
    24.6k repo stars
  36. ▌
    Performing Wireless Security Assessment With Kismet · mukul975 bundle
    Conduct wireless network security assessments using Kismet to detect rogue access points, hidden SSIDs, weak encryption, and unauthorized clients through passive RF monitoring.
    24.6k repo stars
  37. ▌
    Analyzing Malware Family Relationships With Malpedia · mukul975 bundle
    Query the Malpedia API to research malware family relationships, track variant evolution, link families to threat actors, and integrate YARA rules for detection across malware lineages.
    24.6k repo stars
  38. ▌
    Detecting Broken Object Property Level Authorization · mukul975 bundle
    Detect and test for OWASP API3:2023 Broken Object Property Level Authorization vulnerabilities including excessive data exposure and mass assignment attacks.
    24.6k repo stars
  39. ▌
    Exploiting Vulnerabilities With Metasploit Framework · mukul975 bundle
    Validate and confirm exploitability of vulnerabilities using the Metasploit Framework for risk-based prioritization and patch verification.
    24.6k repo stars
  40. ▌
    Implementing Application Whitelisting With Applocker · mukul975 bundle
    Guides through implementing application whitelisting on Windows using AppLocker, from inventory and rule creation to audit-mode deployment and enforcement.
    24.6k repo stars
  41. ▌
    Implementing Azure Ad Privileged Identity Management · mukul975 bundle
    Configure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.
    24.6k repo stars
  42. ▌
    Implementing Continuous Security Validation With Bas · mukul975 bundle
    Deploy Breach and Attack Simulation tools to continuously validate security control effectiveness by safely emulating real-world attack techniques across the kill chain.
    24.6k repo stars
  43. ▌
    Implementing Device Posture Assessment In Zero Trust · mukul975 bundle
    Integrates endpoint health signals from CrowdStrike ZTA, Microsoft Intune, and Jamf into conditional access policies to enforce device compliance before granting resource access.
    24.6k repo stars
  44. ▌
    Implementing Next Generation Firewall With Palo Alto · mukul975 bundle
    Configure and deploy Palo Alto Networks next-generation firewalls with App-ID, User-ID, zone-based policies, SSL decryption, and threat prevention profiles for enterprise network security.
    24.6k repo stars
  45. ▌
    Implementing Ot Network Traffic Analysis With Nozomi · mukul975 bundle
    Deploy Nozomi Networks Guardian sensors for passive OT network traffic analysis to achieve asset visibility, threat detection, and vulnerability assessment across industrial control systems.
    24.6k repo stars
  46. ▌
    Implementing Security Information Sharing With Stix2 · mukul975 bundle
    Create, validate, and share STIX 2.1 threat intelligence objects using the stix2 Python library, covering indicators, malware, campaigns, relationships, bundles, and TAXII 2.1 publishing.
    24.6k repo stars
  47. ▌
    Implementing Vulnerability Management With Greenbone · mukul975 bundle
    Deploy and operate Greenbone/OpenVAS vulnerability management using the python-gvm library to create scan targets, execute vulnerability scans, and parse scan reports via GMP protocol.
    24.6k repo stars
  48. ▌
    Implementing Zero Knowledge Proof For Authentication · mukul975 bundle
    Implements Schnorr identification protocol and zero-knowledge password proof for authentication where the server never learns the user's password.
    24.6k repo stars
  49. ▌
    Performing Active Directory Compromise Investigation · mukul975 bundle
    Investigate Active Directory compromise by analyzing authentication logs, replication metadata, Group Policy changes, and Kerberos ticket anomalies to identify attacker persistence and lateral movement paths.
    24.6k repo stars
  50. ▌
    Performing Active Directory Vulnerability Assessment · mukul975 bundle
    Assess Active Directory security posture using PingCastle, BloodHound, and Purple Knight to identify misconfigurations, privilege escalation paths, and attack vectors.
    24.6k repo stars
  51. ▌
    Performing Memory Forensics With Volatility3 Plugins · mukul975 bundle
    Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware artifacts in Windows, Linux, and macOS memory images.
    24.6k repo stars
  52. ▌
    Performing Thick Client Application Penetration Test · mukul975 bundle
    Conduct a thick client application penetration test to identify insecure local storage, hardcoded credentials, DLL hijacking, memory manipulation, and insecure API communication in desktop applications using dnSpy, Procmon, and Burp Suite.
    24.6k repo stars
  53. ▌
    Conducting Internal Reconnaissance With Bloodhound Ce · mukul975 bundle
    Map Active Directory attack paths and identify privilege escalation chains using BloodHound Community Edition for authorized security assessments.
    24.6k repo stars
  54. ▌
    Exploiting Active Directory Certificate Services Esc1 · mukul975 bundle
    Exploit misconfigured Active Directory Certificate Services ESC1 vulnerability to request certificates as high-privileged users and escalate domain privileges during authorized red team assessments.
    24.6k repo stars
  55. ▌
    Implementing Infrastructure As Code Security Scanning · mukul975 bundle
    Automates security scanning for Infrastructure as Code templates using Checkov, tfsec, and KICS to detect misconfigurations before deployment.
    24.6k repo stars
  56. ▌
    Implementing Network Segmentation With Firewall Zones · mukul975 bundle
    Design and implement network segmentation using firewall security zones, VLANs, ACLs, and microsegmentation policies to restrict lateral movement and enforce least-privilege network access.
    24.6k repo stars
  57. ▌
    Implementing Threat Intelligence Lifecycle Management · mukul975 bundle
    Implement a structured threat intelligence lifecycle encompassing planning, collection, processing, analysis, dissemination, and feedback stages to produce actionable intelligence for organizational decision-making.
    24.6k repo stars
  58. ▌
    Implementing Web Application Logging With Modsecurity · mukul975 bundle
    Configure ModSecurity WAF with OWASP Core Rule Set for web application logging, tune rules to reduce false positives, and analyze audit logs for attack detection.
    24.6k repo stars
  59. ▌
    Performing Adversary In The Middle Phishing Detection · mukul975 bundle
    Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks that use reverse proxy kits like EvilProxy, Evilginx, and Tycoon 2FA to bypass MFA and steal session tokens.
    24.6k repo stars
  60. ▌
    Implementing Image Provenance Verification With Cosign · mukul975 bundle
    Sign and verify container image provenance using Sigstore Cosign with keyless OIDC-based signing, attestations, and Kubernetes admission enforcement.
    24.6k repo stars
  61. ▌
    Implementing Iso 27001 Information Security Management · mukul975 bundle
    Guides through the complete ISO/IEC 27001:2022 ISMS lifecycle from scoping and risk assessment to certification and continual improvement, including Annex A control selection and Statement of Applicability creation.
    24.6k repo stars
  62. ▌
    Performing GCP Penetration Testing With Gcpbucketbrute · mukul975 bundle
    Enumerate and audit GCP storage buckets and IAM policies using GCPBucketBrute and gcloud CLI to identify privilege escalation paths and overly permissive access.
    24.6k repo stars
  63. ▌
    Implementing Github Advanced Security For Code Scanning · mukul975 bundle
    Configure GitHub Advanced Security with CodeQL to perform automated static analysis and vulnerability detection across repositories at enterprise scale.
    24.6k repo stars
  64. ▌
    Implementing Network Intrusion Prevention With Suricata · mukul975 bundle
    Deploy and configure Suricata as a network intrusion prevention system with custom rules, Emerging Threats rulesets, and inline traffic inspection for real-time threat blocking.
    24.6k repo stars
  65. ▌
    Implementing Privileged Access Management With Cyberark · mukul975 bundle
    Deploy CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across enterprise infrastructure, covering vault architecture, session isolation, credential rotation policies, and NIST 800-53 integration.
    24.6k repo stars
  66. ▌
    Building Vulnerability Dashboard With Defectdojo · mukul975 bundle
    Deploy DefectDojo as a centralized vulnerability management dashboard with scanner integrations, deduplication, metrics tracking, and Jira ticketing workflows.
    24.6k repo stars
  67. ▌
    Designing Adversary Engagement With Mitre Engage · mukul975 bundle
    Plan, run, and measure adversary engagement operations using the MITRE Engage framework, covering the Engage Matrix, 10-Step Operational Process, and mapping Activities to ATT&CK techniques.
    24.6k repo stars
  68. ▌
    Detecting Golden Ticket Attacks In Kerberos Logs · mukul975 bundle
    Detect Golden Ticket attacks in Active Directory by analyzing Kerberos TGT anomalies including mismatched encryption types, impossible ticket lifetimes, non-existent accounts, and forged PAC signatures in domain controller event logs.
    24.6k repo stars
  69. ▌
    Exploiting Zerologon Vulnerability Cve 2020 1472 · mukul975 bundle
    Exploit the Zerologon vulnerability (CVE-2020-1472) in the Netlogon Remote Protocol to achieve domain controller compromise by resetting the machine account password to empty.
    24.6k repo stars
  70. ▌
    Implementing Canary Tokens For Network Intrusion · mukul975 bundle
    Deploys DNS, HTTP, and AWS API key canary tokens across network infrastructure to detect unauthorized access and lateral movement, with webhook alerting to Slack, Teams, email, or generic HTTP endpoints.
    24.6k repo stars
  71. ▌
    Implementing End To End Encryption For Messaging · mukul975 bundle
    Implements a simplified version of the Signal Protocol's Double Ratchet algorithm using X25519, HKDF, and AES-256-GCM for end-to-end encrypted messaging.
    24.6k repo stars
  72. ▌
    Implementing File Integrity Monitoring With Aide · mukul975 bundle
    Configure AIDE for file integrity monitoring, including baseline creation, scheduled integrity checks, change detection, and alerting.
    24.6k repo stars
  73. ▌
    Implementing GCP Organization Policy Constraints · mukul975 bundle
    Enforce security guardrails across GCP resource hierarchy by configuring organization policy constraints to restrict risky configurations and ensure compliance at organization, folder, and project levels.
    24.6k repo stars
  74. ▌
    Implementing Mimecast Targeted Attack Protection · mukul975 bundle
    Deploy Mimecast Targeted Threat Protection including URL Protect, Attachment Protect, Impersonation Protect, and Internal Email Protect to defend against advanced phishing and spearphishing attacks.
    24.6k repo stars
  75. ▌
    Implementing Runtime Application Self Protection · mukul975 bundle
    Deploy Runtime Application Self-Protection (RASP) agents to detect and block attacks from within application runtime, covering OpenRASP integration, attack pattern detection, and security policy configuration for Java and Python web applications.
    24.6k repo stars
  76. ▌
    Performing Cloud Incident Containment Procedures · mukul975 bundle
    Execute cloud-native incident containment across AWS, Azure, and GCP by isolating compromised resources, revoking credentials, preserving forensic evidence, and applying security group restrictions to prevent lateral movement.
    24.6k repo stars
  77. ▌
    Performing Entitlement Review With Sailpoint Iiq · mukul975 bundle
    Runs entitlement review and access certification campaigns using SailPoint IdentityIQ, including manager certifications, targeted entitlement reviews, role-based access validation, SOD violation remediation, and automated revocation workflows.
    24.6k repo stars
  78. ▌
    Performing Mobile App Certificate Pinning Bypass · mukul975 bundle
    Bypasses SSL/TLS certificate pinning in Android and iOS apps to intercept HTTPS traffic during authorized security assessments using Frida, Objection, and custom scripts.
    24.6k repo stars
  79. ▌
    Performing Paste Site Monitoring For Credentials · mukul975 bundle
    Monitor paste sites like Pastebin and GitHub Gists for leaked credentials, API keys, and sensitive data using automated scraping and keyword matching to detect breaches early.
    24.6k repo stars
  80. ▌
    Performing Threat Emulation With Atomic Red Team · mukul975 bundle
    Executes Atomic Red Team tests for MITRE ATT&CK technique validation using the atomic-operator Python framework. Loads test definitions from YAML atomics, runs attack simulations, and validates detection coverage.
    24.6k repo stars
  81. ▌
    Performing Threat Intelligence Sharing With Misp · mukul975 bundle
    Create, enrich, and share threat intelligence events on a MISP platform using PyMISP, including IOC management, feed integration, STIX export, and community sharing workflows.
    24.6k repo stars
  82. ▌
    Post Exploiting Microsoft Graph With Graphrunner · mukul975 bundle
    Perform reconnaissance, persistence, privilege escalation, and data pillaging on Microsoft 365/Entra ID tenants via the Microsoft Graph API using the GraphRunner PowerShell toolset.
    24.6k repo stars
  83. ▌
    Analyzing Ethereum Smart Contract Vulnerabilities · mukul975 bundle
    Perform static and symbolic analysis of Solidity smart contracts using Slither and Mythril to detect reentrancy, integer overflow, access control, and other vulnerability classes before deployment to Ethereum mainnet.
    24.6k repo stars
  84. ▌
    Building Adversary Infrastructure Tracking System · mukul975 bundle
    Build an automated system to track adversary infrastructure using passive DNS, certificate transparency, WHOIS data, and IP enrichment to map and monitor threat actor command-and-control networks.
    24.6k repo stars
  85. ▌
    Building Threat Intelligence Enrichment In Splunk · mukul975 bundle
    Build automated threat intelligence enrichment pipelines in Splunk Enterprise Security using lookup tables, modular inputs, and the Threat Intelligence Framework.
    24.6k repo stars
  86. ▌
    Conducting Cyber Risk Assessment With Nist 800 30 · mukul975 bundle
    Conduct a defensible cybersecurity risk assessment using the NIST SP 800-30 Rev 1 methodology, from scoping and threat identification to risk determination and communication.
    24.6k repo stars
  87. ▌
    Detecting Anomalies In Industrial Control Systems · mukul975 bundle
    Deploys anomaly detection for industrial control environments using machine learning models trained on OT network baselines, physics-based process models, and behavioral analysis of industrial protocol communications.
    24.6k repo stars
  88. ▌
    Detecting AWS Credential Exposure With Trufflehog · mukul975 bundle
    Scan source code repositories, CI/CD pipelines, and configuration files for exposed AWS credentials using TruffleHog, git-secrets, and AWS-native detection mechanisms to prevent credential theft and unauthorized account access.
    24.6k repo stars
  89. ▌
    Detecting Azure Storage Account Misconfigurations · mukul975 bundle
    Audit Azure Blob and ADLS storage accounts for public access exposure, weak or long-lived SAS tokens, missing encryption at rest, disabled HTTPS-only traffic, and outdated TLS versions using the azure-mgmt-storage Python SDK.
    24.6k repo stars
  90. ▌
    Detecting Privilege Escalation In Kubernetes Pods · mukul975 bundle
    Detect and prevent privilege escalation in Kubernetes pods by monitoring security contexts, capabilities, and syscall patterns with Falco and OPA policies.
    24.6k repo stars
  91. ▌
    Detecting T1548 Abuse Elevation Control Mechanism · mukul975 bundle
    Detect abuse of elevation control mechanisms including UAC bypass, sudo exploitation, and setuid/setgid manipulation by monitoring registry modifications, process elevation flags, and unusual parent-child process relationships.
    24.6k repo stars
  92. ▌
    Implementing Aqua Security For Container Scanning · mukul975 bundle
    Deploy Aqua Security's Trivy scanner to detect vulnerabilities, misconfigurations, secrets, and license issues in container images across CI/CD pipelines and registries.
    24.6k repo stars
  93. ▌
    Implementing Conditional Access Policies Azure Ad · mukul975 bundle
    Configure Microsoft Entra ID (Azure AD) Conditional Access policies for zero trust access control, covering signal-based policy design, device compliance, risk-based authentication, named locations, session controls, and NIST SP 1800-35 integration.
    24.6k repo stars
  94. ▌
    Implementing Google Workspace Phishing Protection · mukul975 bundle
    Configure Google Workspace advanced phishing and malware protection settings including pre-delivery scanning, attachment protection, spoofing detection, and Enhanced Safe Browsing.
    24.6k repo stars
  95. ▌
    Implementing Hardware Security Key Authentication · mukul975 bundle
    Implements FIDO2/WebAuthn hardware security key authentication with registration, authentication, YubiKey enrollment, and passkey migration using the python-fido2 library.
    24.6k repo stars
  96. ▌
    Implementing Identity Verification For Zero Trust · mukul975 bundle
    Implement continuous identity verification for zero trust using phishing-resistant MFA (FIDO2/WebAuthn), risk-based conditional access, and identity governance aligned with the CISA Zero Trust Maturity Model.
    24.6k repo stars
  97. ▌
    Implementing Network Traffic Analysis With Arkime · mukul975 bundle
    Deploy and query Arkime for full packet capture network traffic analysis, including session search, PCAP download, beaconing detection, DNS tunneling analysis, and TLS anomaly identification.
    24.6k repo stars
  98. ▌
    Performing Android App Static Analysis With Mobsf · mukul975 bundle
    Automates static analysis of Android APK/AAB files using MobSF to identify hardcoded secrets, insecure permissions, vulnerable components, and weak cryptography for pre-deployment security assessments or CI/CD integration.
    24.6k repo stars
  99. ▌
    Performing Bandwidth Throttling Attack Simulation · mukul975 bundle
    Simulates bandwidth throttling and network degradation attacks using tc, iperf3, and Scapy in authorized environments to test quality-of-service controls, application resilience, and network monitoring detection of traffic manipulation attacks.
    24.6k repo stars
  100. ▌
    Performing Cloud Asset Inventory With Cartography · mukul975 bundle
    Map cloud infrastructure assets and relationships into a Neo4j graph using Cartography to discover attack paths, IAM permission chains, and security gaps across AWS, GCP, and Azure.
    24.6k repo stars