adriannoes

62 mods across 1 repository, 53 stars between them.

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Builds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms including Splunk, Elastic, and Microsoft Sentinel. Use when creating portable detection logic from threat intelligence, mapping rules to MITRE ATT&CK techniques, or converting community Sigma rules into…

53 4d ago A 77 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Designs and documents structured incident response playbooks that define step-by-step procedures for specific incident types aligned with NIST SP 800-61r3 and SANS PICERL frameworks. Covers playbook structure, decision trees, escalation criteria, RACI matrices, and integration with SOAR platforms. Activates for…

53 4d ago A 94 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Systematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable detection, blocking, and threat intelligence sharing. Covers network, host, email, and behavioral indicators using STIX/TAXII formats and threat intelligence platforms. Activates for…

53 4d ago A 88 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment, cloud-native log analysis, resource isolation, and forensic evidence acquisition adapted for ephemeral cloud infrastructure. Activates for requests involving cloud incident response, AWS security incident…

53 4d ago A 76 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Conduct a defensible cybersecurity risk assessment using the NIST SP 800-30 Rev 1 methodology: prepare scope and a risk model, identify threat sources and threat events, identify vulnerabilities and predisposing conditions, determine likelihood and impact, compute risk, and communicate results as a prioritized risk…

53 4d ago A 219 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Executes containment strategies to stop active adversary operations and prevent lateral movement during a confirmed security breach. Implements short-term and long-term containment using network segmentation, endpoint isolation, credential revocation, and access control modifications. Activates for requests involving…

53 4d ago A 73 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Wire Promptfoo and DeepTeam into CI/CD for automated regression red-teaming of LLM apps against OWASP LLM Top 10 and OWASP Agentic presets, failing the build when jailbreak or injection vulnerabilities regress.

53 4d ago A 56 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Correlates security events in IBM QRadar SIEM using AQL (Ariel Query Language), custom rules, building blocks, and offense management to detect multi-stage attacks across network, endpoint, and application log sources. Use when SOC analysts need to investigate QRadar offenses, build correlation rules, or tune…

53 4d ago A 78 tokens original MIT

adriannoes/awesome-agentic-ai

Skill Claude CodeCodex

Deobfuscates malicious JavaScript code used in web-based attacks, phishing pages, and dropper scripts by reversing encoding layers, eval chains, string manipulation, and control flow obfuscation to reveal the original malicious logic. Activates for requests involving JavaScript malware analysis, script deobfuscation…

53 4d ago B 82 tokens original MIT