ids▌
7 indexed skills · max 10 per page
configuring-snort-ids-for-intrusion-detection
mukul975/Anthropic-Cybersecurity-Skills · configuring-snort-ids-for-intrusion-detection
Installs, configures, and tunes Snort 3 intrusion detection system to monitor network traffic for malicious activity using custom and community rulesets, preprocessors, and alert output plugins on authorized network segments.
detecting-modbus-command-injection-attacks
mukul975/Anthropic-Cybersecurity-Skills · detecting-modbus-command-injection-attacks
Detect command injection attacks against Modbus TCP/RTU protocol in ICS environments by monitoring for unauthorized write operations, anomalous function codes, malformed frames, and deviations from established communication baselines using ICS-aware IDS and protocol deep packet inspection.
performing-network-traffic-analysis-with-zeek
mukul975/Anthropic-Cybersecurity-Skills · performing-network-traffic-analysis-with-zeek
Deploy Zeek network security monitor to capture, parse, and analyze network traffic metadata for threat detection, anomaly identification, and forensic investigation.
detecting-dnp3-protocol-anomalies
mukul975/Anthropic-Cybersecurity-Skills · detecting-dnp3-protocol-anomalies
Detect anomalies in DNP3 (Distributed Network Protocol 3) communications used in SCADA systems by monitoring for unauthorized control commands, firmware update attempts, protocol violations, and deviations from baseline traffic patterns using deep packet inspection and machine learning approaches.
implementing-network-intrusion-prevention-with-suricata
mukul975/Anthropic-Cybersecurity-Skills · implementing-network-intrusion-prevention-with-suricata
Deploy and configure Suricata as a network intrusion prevention system with custom rules, Emerging Threats rulesets, and inline traffic inspection for real-time threat blocking.
detecting-network-scanning-with-ids-signatures
mukul975/Anthropic-Cybersecurity-Skills · detecting-network-scanning-with-ids-signatures
Detect network reconnaissance and port scanning using Suricata and Snort IDS signatures, threshold-based detection rules, and traffic anomaly analysis to identify Nmap, Masscan, and custom scanning activity.
configuring-suricata-for-network-monitoring
mukul975/Anthropic-Cybersecurity-Skills · configuring-suricata-for-network-monitoring
Deploys and configures Suricata IDS/IPS with Emerging Threats rulesets, EVE JSON logging, and custom rules for real-time network traffic inspection, threat detection, and integration with SIEM platforms for centralized security monitoring.