Extract and analyze Cobalt Strike beacon configuration from PE files
上传 ZIP 或贴 GitHub
打包含 SKILL.md 的目录为 zip,或输入公开 GitHub 仓库 / 文件链接。发布后会得到一张卡片和可分享 URL,把这个 URL 发给任何能上网的 AI,它就会读取并按技能执行。
Monitor Certificate Transparency logs using crt.sh and Certstream to
Parse Chromium-based browser databases with Hindsight to extract and correlate browsing history, downloads, cookies, cached content, autofill data, saved passwords, and extensions from Chrome, Edge, Brave, Opera, and Vivaldi into a unified timeline (XLSX, JSON, or SQLite output). Use during incident response, insider-threat investigations, or criminal cases when you need to reconstruct a user's web activity from a browser profile.
'Analyzes bootkit and advanced rootkit malware infecting the Master
'Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query
Detect dangerous ACL misconfigurations in Active Directory using ldap3
>-
Extract and decrypt Windows DPAPI-protected secrets (Credential Manager, browser logins/cookies, Wi-Fi credentials, KeePass keys) online or offline using SharpDPAPI, SharpChrome, Mimikatz, or Impacket's dpapi.py, including domain-wide decryption via the DPAPI backup key. Use during authorized red-team credential-access engagements after gaining a foothold or when triaging DPAPI blobs pulled from a host.
Print a friendly hello. Use when the user says hello-world or wants a greeting skill.