thedixitjain
- 10k skills
- 0 followers
- 2 repo stars
- 2 weeks ago last updated
- ▌ Performing Docker Bench Security Assessment · thedixitjain bundleDocker Bench for Security is an open-source script that checks dozens of common best practices around deploying Docker containers in production. Based on the CIS Docker Benchmark, it audits host confi
- ▌ Performing Ics Asset Discovery With Claroty · thedixitjain bundle'Perform comprehensive ICS/OT asset discovery using Claroty xDome platform, leveraging passive monitoring, Claroty Edge active queries, and integration ecosystem to gain full visibility into industrial control system assets including PLCs, RTUs, HMIs, and network infrastructure across Purdue Model levels. '
- ▌ Performing Privileged Account Access Review · thedixitjain bundleConduct systematic reviews of privileged accounts to validate access rights, identify excessive permissions, and enforce least privilege across PAM infrastructure.
- ▌ Create Architectural Decision Record · thedixitjainCreate an Architectural Decision Record (ADR) document for AI-optimized decision documentation.
- ▌ Ieee Transactions On Biomedical Engineering · thedixitjainUse when targeting IEEE Transactions on Biomedical Engineering (TBME) or deciding whether a biomedical-engineering methods manuscript fits this venue. Encodes the journal's fit, the engineering-method-validated-on-biological-or-clinical-data bar, validation rigor, the TBME-vs-NBME-vs-TMI routing, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Ieee Transactions On Industrial Electronics · thedixitjainUse when targeting IEEE Transactions on Industrial Electronics (TIE) or deciding whether an industrial-application electronics, drives, or control manuscript fits this venue. Encodes the journal's fit, the experimentally-validated industrial-application bar, hardware-evidence rigor, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Implementing Velociraptor For Ir Collection · thedixitjain bundleDeploy and configure Velociraptor for scalable endpoint forensic artifact collection during incident response using VQL queries, hunts, and pre-built artifact packs across Windows, Linux, and macOS environments.
- ▌ Analyzing Cobaltstrike Malleable C2 Profiles · thedixitjain bundleParse and analyze Cobalt Strike Malleable C2 profiles using dissect.cobaltstrike and pyMalleableC2 to extract C2 indicators, detect evasion techniques, and generate network detection signatures.
- ▌ Analyzing Campaign Attribution Evidence · thedixitjain bundleCampaign attribution analysis involves systematically evaluating evidence to determine which threat actor or group is responsible for a cyber operation. This skill covers collecting and weighting attr
- ▌ Doppler Marketing Automation Automation · thedixitjainAutomate Doppler Marketing Automation tasks via Rube MCP (Composio). Always search tools first for current schemas.
- ▌ Auditing MCP Servers For Tool Poisoning · thedixitjain bundleScan Model Context Protocol servers and tool metadata for poisoning, SSRF, and unauthenticated exposure.
- ▌ Analyzing Windows Registry For Artifacts · thedixitjain bundleExtract and analyze Windows Registry hives to uncover user activity, installed software, autostart entries, and evidence of system compromise.
- ▌ Testing Prompt Injection In RAG Pipelines · thedixitjain bundleProbe RAG applications for prompt injection via poisoned retrieved context and embedding manipulation.
- ▌ Extracting Credentials From Memory Dump · thedixitjain bundleExtract cached credentials, password hashes, Kerberos tickets, and authentication tokens from memory dumps using Volatility and Mimikatz for forensic investigation.
- ▌ Extracting Memory Artifacts With Rekall · thedixitjain bundle'Uses Rekall memory forensics framework to analyze memory dumps for process hollowing, injected code via VAD anomalies, hidden processes, and rootkit detection. Applies plugins like pslist, psscan, vadinfo, malfind, and dlllist to extract forensic artifacts from Windows memory images. Use during incident response memory analysis. '
- ▌ Acm Workshop On Hot Topics In Networks · thedixitjainUse when targeting ACM Workshop on Hot Topics in Networks (HotNets) or deciding whether a computer-science manuscript fits this venue. Encodes conference fit, framing, evidence bar, submission-cycle checks, rebuttal posture, and desk-reject risks for networking workshop.
- ▌ Agriculture Ecosystems And Environment · thedixitjainUse when targeting Agriculture, Ecosystems & Environment or deciding whether an agroecosystem-environment manuscript fits this venue. Encodes the journal's fit, the field-to-landscape environmental-outcome bar, data-reporting expectations, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Arsoc Transparency And Reproducibility · thedixitjainUse when documenting the coverage account of an Annual Review of Sociology (ARSoc) review and the transparency obligations of any systematic-review search or meta-analysis the review itself contains. Builds the search/selection record and the reproducibility plan; it does not gather the literature (arsoc-literature-synthesis) or appraise individual studies' designs (arsoc-comprehensiveness-and-balance).
- ▌ Cogpsych Open Science And Transparency · thedixitjainUse when meeting Cognitive Psychology (Elsevier) open-science expectations — sharing data, model code, analysis scripts, and materials so the modeling is reproducible, depositing in repositories with persistent identifiers, completing the Elsevier research-data and competing-interest declarations, and preregistering where applicable. Prepares compliance; it does not waive requirements. Verify current wording on the official guide for authors.
- ▌ Devpsych Open Science And Transparency · thedixitjainUse when meeting Developmental Psychology's (APA) open-science and transparency expectations under the Transparency and Openness Promotion (TOP) guidelines — data and materials sharing with persistent identifiers, preregistration, sample-size justification, and JARS-consistent disclosure — with the ethical handling of data from minors and vulnerable populations. Prepares compliance; it does not waive requirements.
- ▌ Ieee Transactions On Automatic Control · thedixitjainUse when targeting IEEE Transactions on Automatic Control (TAC) or deciding whether a systems-and-control manuscript fits this venue. Encodes the journal's fit, the theory-first contribution bar, proof and assumption rigor, paper-vs-technical-note framing, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Jedpsych Open Science And Transparency · thedixitjainUse when meeting the Journal of Educational Psychology's open-science requirements — the Transparency and Openness subsection stating data/materials/analysis-code availability with persistent identifiers, JARS-compliant reporting, preregistration disclosure (encouraged, not mandatory), and Open Science Badges. Prepares compliance for masked review; it does not waive requirements.
- ▌ Journal Of Tianjin University Of Sport · thedixitjainUse when targeting 《天津体育学院学报》(Journal of Tianjin University of Sport) — a CSSCI comprehensive sport-science journal hosted by Tianjin University of Sport, with a recognized tilt toward 运动人体科学 (exercise physiology / biochemistry / biomechanics / sports medicine / motor control) alongside training and sport humanities & social science. Best for rigorous experimental/measurement exercise-science work and well-evidenced studies needing mechanistic depth; route applied competitive practice to 《中国体育科技》 and history/social-theory work to the social-science-leaning venues.
- ▌ Natural Language And Linguistic Theory · thedixitjainUse when targeting Natural Language & Linguistic Theory (Springer) or deciding whether a theoretical-syntax/morphology manuscript fits this venue. Encodes the journal's fit in formal analysis grounded in rich cross-linguistic data, the empirical-grounding bar, house style, glossing and double-blind norms, official-submission re-check, and desk-reject heuristics.
- ▌ Revedres Comprehensiveness And Balance · thedixitjainUse when testing exhaustiveness, risk-of-bias, heterogeneity, and sensitivity for a Review of Educational Research (RER) review or meta-analysis. Hardens the synthesis against omission and fragility; it does not build the conceptual spine (revedres-organizing-framework) or settle coding reliability and open materials (revedres-transparency-and-reproducibility).
- ▌ Uncertainty In Artificial Intelligence · thedixitjainUse when targeting Conference on Uncertainty in Artificial Intelligence (UAI) or deciding whether a computer-science manuscript fits this venue. Encodes conference fit, framing, evidence bar, submission-cycle checks, rebuttal posture, and desk-reject risks for AI statistics.
- ▌ Analyzing Golang Malware With Ghidra · thedixitjain bundleReverse engineer Go-compiled malware using Ghidra with specialized scripts for function recovery, string extraction, and type reconstruction in stripped Go binaries.
- ▌ Analyzing Network Packets With Scapy · thedixitjain bundleCraft, send, sniff, and dissect network packets using Scapy for protocol analysis, network reconnaissance, and traffic anomaly detection in authorized security testing
- ▌ Analyzing Network Traffic Of Malware · thedixitjain bundle'Analyzes network traffic generated by malware during sandbox execution or live incident response to identify C2 protocols, data exfiltration channels, payload downloads, and lateral movement patterns using Wireshark, Zeek, and Suricata. Activates for requests involving malware network analysis, C2 traffic decoding, malware PCAP analysis, or network-based malware detection. '
- ▌ Analyzing Ransomware Payment Wallets · thedixitjain bundle'Traces ransomware cryptocurrency payment flows using blockchain analysis tools such as Chainalysis Reactor, WalletExplorer, and blockchain.com APIs. Identifies wallet clusters, tracks fund movement through mixers and exchanges, and supports law enforcement attribution. Activates for requests involving ransomware payment tracing, bitcoin wallet analysis, cryptocurrency forensics, or blockchain intelligence gathering. '
- ▌ Analyzing Threat Landscape With Misp · thedixitjain bundleAnalyze the threat landscape using MISP (Malware Information Sharing Platform) by querying event statistics, attribute distributions, threat actor galaxy clusters, and tag trends over time. Uses PyMISP to pull event data, compute IOC type breakdowns, identify top threat actors and malware families, and generate threat landscape reports with temporal trends.
- ▌ Azure Security Keyvault Secrets Java · thedixitjain bundleAzure Key Vault Secrets Java SDK for secret management. Use when storing, retrieving, or managing passwords, API keys, connection strings, or other sensitive configuration data.
- ▌ Building Soc Playbook For Ransomware · thedixitjain bundle'Builds a structured SOC incident response playbook for ransomware attacks covering detection, containment, eradication, and recovery phases with specific SIEM queries, isolation procedures, and decision trees. Use when SOC teams need formalized response procedures for ransomware incidents aligned to NIST SP 800-61 and MITRE ATT&CK ransomware techniques. '
- ▌ Conducting Malware Incident Response · thedixitjain bundle'Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection vectors, assessing spread, and executing eradication procedures. Covers the full lifecycle from detection through containment, analysis, removal, and recovery. Activates for requests involving malware response, malware eradication, trojan removal, worm containment, malware triage, or infected endpoint remediation. '
- ▌ Deploying Software Defined Perimeter · thedixitjain bundleDeploy a Software-Defined Perimeter using the CSA v2.0 specification with Single Packet Authorization, mutual TLS, and SDP controller/gateway configuration to enforce zero trust network access.
- ▌ Exploiting Websocket Vulnerabilities · thedixitjain bundleTesting WebSocket implementations for authentication bypass, cross-site hijacking, injection attacks, and insecure message handling during authorized security assessments.
- ▌ Extracting Iocs From Malware Samples · thedixitjain bundle'Extracts indicators of compromise (IOCs) from malware samples including file hashes, network indicators (IPs, domains, URLs), host artifacts (file paths, registry keys, mutexes), and behavioral patterns for threat intelligence sharing and detection rule creation. Activates for requests involving IOC extraction, threat indicator harvesting, malware indicator collection, or building detection content from samples. '
- ▌ Flowstudio Power Automate Governance · thedixitjain>- Govern Power Automate flows and Power Apps at scale using the FlowStudio MCP cached store. Classify flows by business impact, detect orphaned resources, audit connector usage, enforce compliance standards, manage notification rules, and compute governance scores — all without Dataverse or the CoE Starter Kit. Load this skill when asked to: tag or classify flows, set business impact, assign ownership, detect orphans, audit connectors, check compliance, compute archive scores, manage notification rules, run a governance review, generate a compliance report, offboard a maker, or any task that involves writing governance metadata to flows. Requires a FlowStudio for Teams or MCP Pro+ subscription — see https://mcp.flowstudio.app
- ▌ Performing Container Image Hardening · thedixitjain bundle'This skill covers hardening container images by minimizing attack surface, removing unnecessary packages, implementing multi-stage builds, configuring non-root users, and applying CIS Docker Benchmark recommendations to produce secure production-ready images. '
- ▌ Performing Firmware Malware Analysis · thedixitjain bundle'Analyzes firmware images for embedded malware, backdoors, and unauthorized modifications targeting routers, IoT devices, UEFI/BIOS, and embedded systems. Covers firmware extraction, filesystem analysis, binary reverse engineering, and bootkit detection. Activates for requests involving firmware security analysis, IoT malware investigation, UEFI rootkit detection, or embedded device compromise assessment. '
- ▌ Performing Privacy Impact Assessment · thedixitjain bundle'Automates the Privacy Impact Assessment (PIA) workflow including data flow mapping, privacy risk scoring matrices, GDPR Article 35 DPIA and CCPA/CPRA alignment checks, data inventory cataloging, and remediation tracking. Implements the NIST Privacy Framework PRAM methodology and ICO DPIA guidance for systematic identification and mitigation of privacy risks across processing activities. Use when conducting privacy assessments for new systems, evaluating regulatory compliance posture, or building automated privacy governance programs. '
- ▌ Security Pen Testing · thedixitjain bundleUse when the user asks to perform security audits, penetration testing, vulnerability scanning, OWASP Top 10 checks, or offensive security assessments. Covers static analysis, dependency scanning, secret detection, API security testing, and pen test report generation.
- ▌ Security Scanning Security Hardening · thedixitjainCoordinate multi-layer security scanning and hardening across application, infrastructure, and compliance controls.
- ▌ Testing API For Mass Assignment Vulnerability · thedixitjain bundle'Tests APIs for mass assignment (auto-binding) vulnerabilities where clients can modify object properties they should not have access to by including additional parameters in API requests. The tester identifies writable endpoints, adds undocumented fields to request bodies (role, isAdmin, price, balance), and checks if the server binds these to the data model without filtering. Part of OWASP API3:2023 Broken Object Property Level Authorization. Activates for requests involving mass assignment testing, parameter binding abuse, auto-binding vulnerability, or API over-posting. '
- ▌ Agent Workflow Designer · thedixitjain bundleDesign production-grade multi-agent workflows with clear pattern choice (sequential, parallel, hierarchical), handoff contracts, failure handling, and cost/context controls. Use when architecting a multi-step agent pipeline, choosing between single-agent vs multi-agent approaches, or refactoring an LLM workflow that suffers from context bloat or unreliable handoffs.
- ▌ Exploiting Constrained Delegation Abuse · thedixitjain bundleExploit Kerberos Constrained Delegation misconfigurations in Active Directory to impersonate privileged users via S4U2self and S4U2proxy extensions for lateral movement and privilege escalation.
- ▌ Deploying Palo Alto Prisma Access Zero Trust · thedixitjain bundle'Deploying Palo Alto Networks Prisma Access for SASE-based zero trust network access using GlobalProtect agents, ZTNA Connectors, security policy enforcement, and integration with Strata Cloud Manager for unified security management. '
- ▌ Hunting For Data Staging Before Exfiltration · thedixitjain bundleDetect data staging activity before exfiltration by monitoring for archive creation with 7-Zip/RAR, unusual temp folder access, large file consolidation, and staging directory patterns via EDR and process telemetry
- ▌ Implementing API Security Posture Management · thedixitjain bundleImplement API Security Posture Management to continuously discover, classify, and score APIs based on risk while enforcing security policies across the API lifecycle.
- ▌ Analyzing Cobalt Strike Beacon Configuration · thedixitjain bundleExtract and analyze Cobalt Strike beacon configuration from PE files and memory dumps to identify C2 infrastructure, malleable profiles, and operator tradecraft.
- ▌ Implementing Ddos Mitigation With Cloudflare · thedixitjain bundleConfigure Cloudflare DDoS protection with managed rulesets, rate limiting, WAF rules, Bot Management, and origin protection to mitigate volumetric, protocol, and application-layer attacks.
- ▌ Implementing Network Policies For Kubernetes · thedixitjain bundleKubernetes NetworkPolicies provide pod-level network segmentation by defining ingress and egress rules that control traffic flow between pods, namespaces, and external endpoints. Combined with CNI plu
- ▌ Performing Cloud Native Forensics With Falco · thedixitjain bundle'Uses Falco YAML rules for runtime threat detection in containers and Kubernetes, monitoring syscalls for shell spawns, file tampering, network anomalies, and privilege escalation. Manages Falco rules via the Falco gRPC API and parses Falco alert output. Use when building container runtime security or investigating k8s cluster compromises. '
- ▌ Performing Linux Log Forensics Investigation · thedixitjain bundlePerform forensic investigation of Linux system logs including syslog, auth.log, systemd journal, kern.log, and application logs to reconstruct user activity, detect unauthorized access, and establish event timelines on compromised Linux systems.
- ▌ Ieee Transactions On Wireless Communications · thedixitjainUse when targeting IEEE Transactions on Wireless Communications (TWC) or deciding whether a wireless-communications manuscript fits this venue. Encodes the journal's fit, the analysis-plus-simulation bar, the wireless-specific scope, the TWC-vs-TCOM-vs-JSAC routing, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Implementing Digital Signatures With Ed25519 · thedixitjain bundleEd25519 is a high-performance digital signature algorithm using the Edwards curve Curve25519. It provides 128-bit security with 64-byte signatures and 32-byte keys, offering significant advantages ove
- ▌ Performing Sca Dependency Scanning With Snyk · thedixitjain bundle'This skill covers implementing Software Composition Analysis (SCA) using Snyk to detect vulnerable open-source dependencies in CI/CD pipelines. It addresses scanning package manifests and lockfiles, automated fix pull request generation, license compliance checking, continuous monitoring of deployed applications, and integration with GitHub, GitLab, and Jenkins pipelines. '
- ▌ Detecting Entra Offensive Tools In Graph Logs · thedixitjain bundleHunt AADGraphActivityLogs and MicrosoftGraphActivityLogs in Microsoft Sentinel/Log Analytics for fingerprints of offensive Entra ID tools such as ROADtools, AADInternals, and AzureHound.
- ▌ Performing Timeline Reconstruction With Plaso · thedixitjain bundleBuild comprehensive forensic super-timelines using Plaso (log2timeline) to correlate events across file systems, logs, and artifacts into a unified chronological view.
- ▌ Customer Success Manager · thedixitjain bundleMonitors customer health, predicts churn risk, and identifies expansion opportunities using weighted scoring models for SaaS customer success. Use when analyzing customer accounts, reviewing retention metrics, scoring at-risk customers, or when the user mentions churn, customer health scores, upsell opportunities, expansion revenue, retention analysis, or customer analytics. Runs three Python CLI tools to produce deterministic health scores, churn risk tiers, and prioritized expansion recommendations across Enterprise, Mid-Market, and SMB segments.
- ▌ Implementing Stix Taxii Feed Integration · thedixitjain bundleSTIX (Structured Threat Information eXpression) and TAXII (Trusted Automated eXchange of Intelligence Information) are OASIS open standards for representing and transporting cyber threat intelligence.
- ▌ Analyzing IOS App Security With Objection · thedixitjain bundle>- Runtime iOS app security testing with Objection (Frida): inspect keychain and filesystem data, explore app internals at runtime, and validate/bypass client-side protections during authorized mobile assessments.
- ▌ Analyzing Windows Lnk Files For Artifacts · thedixitjain bundleParse Windows LNK shortcut files to extract target paths, timestamps, volume information, and machine identifiers for forensic timeline reconstruction.
- ▌ Angewandte Chemie International Edition · thedixitjainUse when targeting Angewandte Chemie International Edition (Angew Chem Int Ed) or deciding whether a chemistry manuscript fits this GDCh/Wiley venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Bulletin Of Chinese Academy Of Sciences · thedixitjainUse when targeting 《中国科学院院刊》(Bulletin of Chinese Academy of Sciences — 中国科学院主管主办的战略与决策研究智库月刊, 1986 年创刊, 国家科学思想库核心媒体) or deciding whether a Chinese S&T-strategy/policy manuscript fits this venue. Encodes the journal's fit, framing, think-tank house style, official-submission re-check, and desk-reject heuristics.
- ▌ Comparative Economic And Social Systems · thedixitjainUse when targeting 《经济社会体制比较》(Comparative Economic and Social Systems — 中央党史和文献研究院主管、中央编译出版社主办的 CSSCI 双月刊, 1985 年创刊, 不收版面/审稿费) or deciding whether a Chinese social-science/econ/management manuscript fits this journal. Applies the journal's fit, comparative framing, abstract/keyword house-style, official-submission-check, and desk-reject heuristics.
- ▌ Ieee Transactions On Information Theory · thedixitjainUse when targeting IEEE Transactions on Information Theory or deciding whether an information-theory manuscript fits this venue. Encodes the journal's fit, the theorem-driven achievability-and-converse bar, proof rigor, the paper-vs-correspondence framing, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Journal Of Shanghai University Of Sport · thedixitjainUse when targeting 《上海体育大学学报》(Journal of Shanghai University of Sport, formerly 上海体育学院学报) — a top CSSCI comprehensive sport-science journal with a notably strong social-science / sport-management / policy profile and an internationalized outlook, while still publishing exercise science. Best for theoretically engaged sport social science, sport governance/industry/policy, and well-framed cross-disciplinary work; route applied/competitive training to 《中国体育科技》.
- ▌ Nature Structural And Molecular Biology · thedixitjainUse when targeting Nature Structural & Molecular Biology (NSMB) or deciding whether a structural/molecular biology manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Ppsych Transparency And Reproducibility · thedixitjainUse when meeting open-science and reproducibility obligations for a Perspectives on Psychological Science (PoPS) piece — repository deposit for any original data, a documented and ideally preregistered systematic protocol for meta-science, and exemplary disclosure (PoPS is an open-science leader). Builds the transparency layer; it does not draft the synthesis (ppsych-organizing-framework) or run the submission preflight (ppsych-submission).
- ▌ Psychbull Open Science And Transparency · thedixitjainUse when planning and assembling the transparency package for a Psychological Bulletin submission — protocol preregistration (PROSPERO/OSF), TOP-compliant disclosure, and depositing the database, codebook, and analysis scripts. Covers transparency requirements; it does not run the analysis.
- ▌ Public Administration And Policy Review · thedixitjainUse when targeting 《公共管理与政策评论》(Public Administration and Policy Review — 中国人民大学主办的公共管理与政策双月刊, 匿名评阅) or deciding whether a Chinese public-administration/policy manuscript fits this journal. Encodes the journal's fit, framing, abstract house style, anonymous-review rules, official-submission re-check, and desk-reject heuristics.
- ▌ Science Of Science And Management Of St · thedixitjainUse when targeting 《科学学与科学技术管理》(Science of Science and Management of S&T — 天津市科技发展战略研究院主办、中国科学学与科技政策研究会会刊, 1980 年创刊) or deciding whether a Chinese science-of-science/S&T-management manuscript fits this venue. Encodes the journal's fit, framing, abstract/keyword house style, official-submission re-check, and desk-reject heuristics.
- ▌ Systems Engineering Theory And Practice · thedixitjainUse when targeting 《系统工程理论与实践》(Systems Engineering Theory and Practice — 中国系统工程学会会刊, 中国科协主管, 1981 年创刊月刊, 国自然管理科学 A 级 / EI 收录) or deciding whether a Chinese systems-engineering/management-science manuscript fits this venue. Encodes the journal's fit, framing, abstract/citation house style, review timeline, official-submission re-check, and desk-reject heuristics.
- ▌ Analyzing Bootkit And Rootkit Samples · thedixitjain bundle'Analyzes bootkit and advanced rootkit malware that infects the Master Boot Record (MBR), Volume Boot Record (VBR), or UEFI firmware to gain persistence below the operating system. Covers boot sector analysis, UEFI module inspection, and anti-rootkit detection techniques. Activates for requests involving bootkit analysis, MBR malware investigation, UEFI persistence analysis, or pre-OS malware detection. '
- ▌ Assisting With Soc2 Audit Preparation · thedixitjain bundle'Execute automate SOC 2 audit preparation including evidence gathering, control assessment, and compliance gap identification. Use when you need to prepare for SOC 2 audits, assess Trust Service Criteria compliance, document security controls, or generate readiness reports. Trigger with phrases like "SOC 2 audit preparation", "SOC 2 readiness assessment", "collect SOC 2 evidence", or "Trust Service Criteria compliance". '
- ▌ Building Threat Intelligence Platform · thedixitjain bundleBuilding a Threat Intelligence Platform (TIP) involves deploying and integrating multiple CTI tools into a unified system for collecting, analyzing, enriching, and disseminating threat intelligence. T
- ▌ Conducting Phishing Incident Response · thedixitjain bundle'Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages across the organization, and remediating affected accounts. Covers email header analysis, URL/attachment sandboxing, and mailbox-wide purge operations. Activates for requests involving phishing response, email incident, credential phishing, spear phishing investigation, or phishing remediation. '
- ▌ Configuring Oauth2 Authorization Flow · thedixitjain bundleConfigure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. This skill covers flow selection, PKCE implementation, token
- ▌ Correlating Security Events In Qradar · thedixitjain bundle'Correlates security events in IBM QRadar SIEM using AQL (Ariel Query Language), custom rules, building blocks, and offense management to detect multi-stage attacks across network, endpoint, and application log sources. Use when SOC analysts need to investigate QRadar offenses, build correlation rules, or tune detection logic for reducing false positives. '
- ▌ Detecting Fileless Malware Techniques · thedixitjain bundle'Detects and analyzes fileless malware that operates entirely in memory using PowerShell, WMI, .NET reflection, registry-resident payloads, and living-off-the-land binaries (LOLBins) without writing traditional executable files to disk. Activates for requests involving fileless threat detection, in-memory malware investigation, LOLBin abuse analysis, or WMI persistence examination. '
- ▌ Performing Log Source Onboarding In Siem · thedixitjain bundlePerform structured log source onboarding into SIEM platforms by configuring collectors, parsers, normalization, and validation for complete security visibility.
- ▌ Qdrant Indexing Performance Optimization · thedixitjainDiagnoses and fixes slow Qdrant indexing and data ingestion. Use when someone reports 'uploads are slow', 'indexing takes forever', 'optimizer is stuck', 'HNSW build time too long', or 'data uploaded but search is bad'. Also use when optimizer status shows errors, segments won't merge, or indexing threshold questions arise.
- ▌ Detecting Exfiltration Over Dns With Zeek · thedixitjain bundleDetect DNS-based data exfiltration by analyzing Zeek dns.log for high-entropy subdomains and anomalous query patterns
- ▌ Detecting Living Off The Land With Lolbas · thedixitjain bundleDetect Living Off the Land Binaries (LOLBins/LOLBAS) abuse including certutil, regsvr32, mshta, and rundll32 via process telemetry, Sigma rules, and parent-child process analysis
- ▌ Detecting Suspicious Powershell Execution · thedixitjain bundleDetect suspicious PowerShell execution patterns including encoded commands, download cradles, AMSI bypass attempts, and constrained language mode evasion.
- ▌ Hunting For Spearphishing Indicators · thedixitjain bundleHunt for spearphishing campaign indicators across email logs, endpoint telemetry, and network data to detect targeted email attacks.
- ▌ Antigravity Maintainer Batch Release · thedixitjain bundleRun protected AAS maintainer sweeps, PR merge batches, canonical sync, Core preview checks, and scripted releases. Use for repository maintenance, main alignment, CLI/MCP/Workbench changes, or release work; not ordinary contribution tasks.
- ▌ Detecting Living Off The Land Attacks · thedixitjain bundle'Detect abuse of legitimate Windows binaries (LOLBins) used for living off the land attacks. Monitors process creation, command-line arguments, and parent-child relationships to identify suspicious LOLBin execution patterns. '
- ▌ Senior Prompt Engineer · thedixitjain bundleUse when the user asks to optimize prompts, design prompt templates, evaluate LLM outputs with an eval set, measure RAG retrieval quality, validate agent/tool configurations, analyze token usage, or design structured-output contracts. Covers eval-driven prompt iteration, RAG metrics (relevance, faithfulness, coverage), agent workflow validation, and token/cost budgeting — all model-agnostic, with three stdlib Python tools.
- ▌ Acm Interactive Surfaces And Spaces · thedixitjainUse when targeting ACM Interactive Surfaces and Spaces (ISS) or deciding whether a computer-science manuscript fits this venue. Encodes conference fit, framing, evidence bar, submission-cycle checks, rebuttal posture, and desk-reject risks for interactive surfaces.
- ▌ Agricultural And Forest Meteorology · thedixitjainUse when targeting Agricultural and Forest Meteorology or deciding whether a land–atmosphere manuscript fits this venue. Encodes the journal's fit, the land–atmosphere-process and flux-measurement bar, micrometeorological evidence expectations, Elsevier house style, official-submission re-check, and desk-reject heuristics.
- ▌ Earth And Planetary Science Letters · thedixitjainUse when targeting Earth and Planetary Science Letters (EPSL) or deciding whether a quantitative solid-earth or planetary-science manuscript fits this venue. Encodes the journal's broad-interest process-science fit, the quantitative geochemistry/geophysics evidence bar, Elsevier house style, official-submission re-check, and desk-reject heuristics.
- ▌ International Journal Of Plasticity · thedixitjainUse when targeting the International Journal of Plasticity (IJP) or deciding whether a plastic-deformation modeling manuscript fits this venue. Encodes the journal's fit, the constitutive-model-plus-experimental-validation bar, the plasticity-centric scope, the IJP-vs-JMPS routing, official-submission re-check, and desk-reject heuristics.
- ▌ Jmf Theory And Conceptual Framework · thedixitjainUse when building the theoretical and conceptual framework of a Journal of Marriage and Family (JMF) manuscript. JMF values explicit family-science frameworks (life course, family systems, stress process, exchange/bargaining, ecological) with clear concepts, mechanisms, and hypotheses. Structures the argument; it does not run analyses.
- ▌ Journal Of Chengdu Sport University · thedixitjainUse when targeting 《成都体育学院学报》(Journal of Chengdu Sport University) — a CSSCI comprehensive sport-science journal hosted by Chengdu Sport University, distinctively strong in sport history, ethnic traditional sport, martial arts, traditional health-preservation (养生) and sport culture, alongside general sport science. Best for historically/culturally grounded sport studies and ethnic-traditional-sport scholarship; route lab-based exercise science to the exercise-science-leaning venues and applied competitive work to 《中国体育科技》.
- ▌ Journal Of Money Credit And Banking · thedixitjainUse when targeting Journal of Money, Credit and Banking (JMCB) or deciding whether a money / banking / monetary-policy / macro-finance manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Research And Development Management · thedixitjainUse when targeting 《研究与发展管理》(R&D Management — 复旦大学主办的研发/创新管理双月刊, 三审三校) or deciding whether a Chinese R&D/innovation-management manuscript fits this venue. Encodes the journal's fit, framing, abstract/footnote house style, official-submission re-check, and desk-reject heuristics.
- ▌ Research Summarizer · thedixitjain bundleStructured research summarization agent skill for non-dev users. Handles academic papers, web articles, reports, and documentation. Extracts key findings, generates comparative analyses, and produces properly formatted citations. Use when: user wants to summarize a research paper, compare multiple sources, extract citations from documents, or create structured research briefs. Plugin for Claude Code, Codex, Gemini CLI, and OpenClaw.
- ▌ Revedres Proposal And Commissioning · thedixitjainUse when writing the protocol, fixing scope and eligibility, and (where applicable) preregistering a systematic review or meta-analysis before searching, for a Review of Educational Research (RER) manuscript. Produces the a-priori plan; it does not run the search (revedres-literature-synthesis) or impose the conceptual spine (revedres-organizing-framework).