Security skills.
2,014 security skills, including brandkit, security-review and defi-amm-security, are listed on ahel today. Each one has a page of its own that says what it does and whether ahel can serve it in Claude, Claude Code, ChatGPT, Codex and Cursor.
Category: Security
2,014 results · page 4 of 68
- View details
analyzing-malicious-url-with-urlscanSkillSecurity
Lets your agent safely scan suspicious URLs and get screenshots, page behavior, and threat details.
Ready to connect★ 34k
- View details
analyzing-malware-behavior-with-cuckoo-sandboxSkillSecurity
Lets your agent run suspicious files in a Cuckoo Sandbox and report what the malware does at runtime.
Ready to connect★ 34k
- View details
analyzing-malware-family-relationships-with-malpediaSkillSecurity
Lets your agent look up malware family aliases, YARA rules, and links to threat actors in Malpedia.
Ready to connect★ 34k
- View details
analyzing-malware-persistence-with-autorunsSkillSecurity
Lets your agent scan Windows startup locations with Autoruns to find where malware hides and persists.
Ready to connect★ 34k
- View details
analyzing-malware-sandbox-evasion-techniquesSkillSecurity
Lets your agent analyze malware sandbox reports to detect when samples use tricks to avoid analysis.
Ready to connect★ 34k
- View details
analyzing-network-covert-channels-in-malwareSkillSecurity
Lets your agent analyze network captures to detect hidden malware communication like DNS tunneling and data exfiltration.
Ready to connect★ 34k
- View details
analyzing-network-traffic-of-malwareSkillSecurity
Lets your agent analyze malware network traffic captures to spot command-and-control, data theft, and beaconing patterns.
Ready to connect★ 34k
- View details
analyzing-network-traffic-with-wiresharkSkillSecurity
Lets your agent capture and analyze network traffic with Wireshark to find suspicious activity and diagnose issues.
Ready to connect★ 34k
- View details
analyzing-packed-malware-with-upx-unpackerSkillSecurity
Guides your agent to detect and unpack UPX-packed malware binaries so the original executable can be analyzed statically.
Ready to connect★ 34k
- View details
analyzing-supply-chain-malware-artifactsSkillSecurity
Lets your agent investigate compromised software updates and dependencies to find how a supply chain attack happened.
Ready to connect★ 34k
- View details
analyzing-threat-actor-ttps-with-mitre-attackSkillSecurity
Lets your agent map threat actor behaviors and indicators to MITRE ATT&CK techniques and build coverage heatmaps.
Ready to connect★ 34k
- View details
analyzing-threat-intelligence-feedsSkillSecurity
Lets your agent analyze threat intelligence feeds to extract indicators and adversary context.
Ready to connect★ 34k
- View details
analyzing-threat-landscape-with-mispSkillSecurity
Lets your agent query a MISP threat intelligence platform to report on threat actors, malware, and indicators.
Ready to connect★ 34k
- View details
analyzing-typosquatting-domains-with-dnstwistSkillSecurity
Lets your agent find lookalike domains that may be impersonating yours by generating permutations and checking DNS.
Ready to connect★ 34k
- View details
analyzing-uefi-bootkit-persistenceSkillSecurity
Lets your agent analyze UEFI firmware for bootkit persistence, Secure Boot bypasses, and known implants like BlackLotus.
Ready to connect★ 34k
- View details
analyzing-windows-amcache-artifactsSkillSecurity
Guides your agent through parsing the Windows Amcache registry hive to find evidence of which programs ran on a system.
Ready to connect★ 34k
- View details
analyzing-windows-registry-for-artifactsSkillSecurity
Lets your agent extract and analyze Windows Registry hives to uncover user activity and malware persistence.
Ready to connect★ 34k
- View details
analyzing-windows-shellbag-artifactsSkillSecurity
Lets your agent reconstruct a user's Windows folder browsing history from registry artifacts, even for deleted folders.
Ready to connect★ 34k
- View details
assessing-vector-and-embedding-weaknessesSkillSecurity
Lets your agent security-test a RAG vector store for embedding inversion, tenant data leakage, and poisoning.
Ready to connect★ 34k
- View details
attacking-oauth-with-device-code-phishingSkillSecurity
Lets your agent simulate OAuth device-code and consent phishing attacks against Microsoft Entra ID to steal tokens.
Ready to connect★ 34k
- View details
auditing-entra-id-with-aadinternalsSkillSecurity
Lets your agent run AADInternals PowerShell commands to probe Microsoft Entra ID tenants and test federation defenses.
Ready to connect★ 34k
- View details
auditing-uefi-firmware-with-chipsecSkillSecurity
Lets your agent audit a PC's firmware security settings and dump SPI flash using the CHIPSEC tool.
Ready to connect★ 34k
- View details
automating-ioc-enrichmentSkillSecurity
Lets your agent add threat intelligence context to suspicious IPs, domains, URLs, and file hashes automatically.
Ready to connect★ 34k
- View details
building-attack-pattern-library-from-cti-reportsSkillSecurity
Lets your agent read threat intelligence reports and turn adversary behaviors into a searchable MITRE ATT&CK library.
Ready to connect★ 34k
- View details
building-automated-malware-submission-pipelineSkillSecurity
Lets your agent collect suspicious files, submit them to sandboxes and scanners, and produce verdicts with IOCs.
Ready to connect★ 34k
- View details
building-c2-redirector-infrastructureSkillSecurity
Lets your agent build C2 redirector servers that filter red-team implant traffic and hide the team server.
Ready to connect★ 34k
- View details
building-detection-rules-with-sigmaSkillSecurity
Lets your agent write and convert portable threat detection rules into Splunk, Elastic, or Sentinel queries.
Ready to connect★ 34k
- View details
building-devsecops-pipeline-with-gitlab-ciSkillSecurity
Lets your agent set up a GitLab CI/CD pipeline with automated code, container, dependency, and secret security scanning.
Ready to connect★ 34k
- View details
building-identity-governance-lifecycle-processSkillSecurity
Lets your agent design automated joiner-mover-leaver identity lifecycle processes for access governance platforms.
Ready to connect★ 34k
- View details
building-ioc-defanging-and-sharing-pipelineSkillSecurity
Lets your agent extract, clean up, and safely share threat indicators like malicious URLs, IPs, and domains.
Ready to connect★ 34k
Looking for something else?
Security is one category of skills on ahel. Browse all skills, or open another category above.