threat-hunting
Finds hidden attacks on your network and builds detection rules so security teams catch bad actors faster.
Installation
Paste this into Claude Code, Cursor, or any agent that can run commands.
What this skill does
What it does: - Searches through computer logs and security data to find signs of attackers - Creates detection rules using Sigma and YARA that catch bad behavior - Helps tune security alerts so they catch real threats without too many false alarms - Works with security information systems to find suspicious activity - Checks if new detection rules actually work by testing them. When to use it: - Your security team suspects attackers are hiding in your network - You want to find attacks that automated alerts might miss - You need to create new detection rules for your security system - You want to test if your detection rules catch real attacks - You need to find patterns of suspicious behavior across many computers.
The full skill text could not be loaded right now. It installs fine with the command above, or read it at the source.
Mirrored from the author's public source. Install counts from the open skills registry.