Mikaru0Mystic

61 mods across 2 repositories, 15 stars between them.

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Captures and analyzes network packet data using Wireshark and tshark to identify malicious traffic patterns, diagnose protocol issues, extract artifacts, and support incident response investigations on authorized network segments.

11 2mo ago B 49 tokens copy · 94% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Parse Office 365 Unified Audit Logs via Microsoft Graph API to detect email forwarding rule creation, inbox delegation, suspicious OAuth app grants, and other indicators of account compromise.

11 2mo ago A 46 tokens copy · 97% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Analyze Microsoft Outlook PST and OST files for email forensic evidence including message content, headers, attachments, deleted items, and metadata using libpff, pst-utils, and forensic email analysis tools for legal investigations and incident response.

11 2mo ago A 56 tokens copy · 91% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Identifies and unpacks UPX-packed and other packed malware samples to expose the original executable code for static analysis. Covers both standard UPX unpacking and handling modified UPX headers that prevent automated decompression. Activates for requests involving malware unpacking, UPX decompression, packer…

11 2mo ago A 79 tokens copy · 86% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to identify embedded JavaScript, shellcode, exploits, and suspicious objects without opening the document. Determines the attack vector and extracts embedded payloads for further analysis. Activates for requests involving PDF malware analysis, malicious…

11 2mo ago A 84 tokens copy · 94% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Detect and analyze Linux persistence mechanisms including crontab entries, systemd service units, LDPRELOAD hijacking, bashrc modifications, and authorizedkeys backdoors using auditd and file integrity monitoring.

11 2mo ago B 50 tokens copy · 84% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Detect PowerShell Empire framework artifacts in Windows event logs by identifying Base64 encoded launcher patterns, default user agents, staging URL structures, stager IOCs, and known Empire module signatures in Script Block Logging events.

11 2mo ago A 54 tokens copy · 100% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Parse Windows PowerShell Script Block Logs (Event ID 4104) from EVTX files to detect obfuscated commands, encoded payloads, and living-off-the-land techniques. Uses python-evtx to extract and reconstruct multi-block scripts, applies entropy analysis and pattern matching for Base64-encoded commands, Invoke-Expression…

11 2mo ago A 88 tokens copy · 89% Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Analyzes encryption algorithms, key management, and file encryption routines used by ransomware families to assess decryption feasibility, identify implementation weaknesses, and support recovery efforts. Covers AES, RSA, ChaCha20, and hybrid encryption schemes. Activates for requests involving ransomware…

11 2mo ago A 79 tokens original Apache-2.0

Mikaru0Mystic/sectinel

Skill Claude CodeCodex

Monitor and analyze ransomware group data leak sites (DLS) to track victim postings, extract threat intelligence on group tactics, and assess sector-specific ransomware risk for proactive defense.

11 2mo ago A 46 tokens original Apache-2.0

breachproof

60

Mikaru0Mystic/breachproof

Cursor rule

Breachproof - autonomous AI security audit + auto-fix until zero findings remain.

4 1mo ago A 17 tokens original Apache-2.0

breachproof

61

Mikaru0Mystic/breachproof

Skill Claude CodeCodex

Autonomous security audit and hardening that scans, exploits, fixes, and re-scans a codebase to zero findings, mapped to SOC 2.

4 1mo ago A 35 tokens original Apache-2.0