Threat Hunting & Intelligence Bundle
MITRE-mapped detection engineering, IOC tracking, SIEM rules, and adversary analysis.
Included Skills (7)
- Proactive Threat Hunting — This skill proactively identifies threats by using hypothesis-driven hunting, IOC analysis, and anomaly detection for security analysts.
- APT Correlation Architect — This tool assists security analysts in developing multi-event SIEM correlation rules to detect complex APT lateral movement patterns across Windows environments.
- DLL Sideloading Detector — This tool identifies malicious DLL side-loading and search-order hijacking by analyzing Sysmon events to assist security analysts in proactive threat hunting efforts.
- Automated OSINT Framework — SpiderFoot automates OSINT investigations with 200+ modules, correlating data across sources to build comprehensive target profiles for threat intelligence.
- Threat Actor Profiler — This tool aggregates intelligence on adversary TTPs and campaign data to help security professionals build comprehensive profiles for threat modeling and executive briefings.
- Detection Engineering Automator — This skill automates the detection engineering lifecycle in Google SecOps, helping security engineers generate, simulate, and deploy YARA-L rules to close coverage gaps.
- Vulnerability Prioritization Assistant — This tool helps security professionals calculate and interpret CVSS scores to effectively prioritize vulnerability remediation efforts based on industry-standard risk assessment frameworks.