Skip to main content

Database

Browse 6,168 skills across 448 packs and 38 categories

Showing 1621–1680 of 1,758 skills
1,758 skills found in Technology & Engineering

forensic-readiness

139L

Forensic log retention assessment, evidence preservation, and attack traceability

Technology & EngineeringDetection Logging Agent

incident-response

203L

IR handoff quality assessment, playbook review, and communication evaluation

Technology & EngineeringDetection Logging Agent

siem-coverage

143L

SIEM coverage assessment, log source gaps, and detection blind spot analysis

Technology & EngineeringDetection Logging Agent

threat-hunting

185L

Proactive threat hunting methodology with hypothesis-driven search techniques

Technology & EngineeringDetection Logging Agent

container-security

156L

Container image hygiene, Kubernetes RBAC, and pod security assessment

Technology & EngineeringEndpoint Agent

edr-visibility

126L

EDR and antivirus coverage gap analysis and blind spot detection

Technology & EngineeringEndpoint Agent

local-privilege

146L

Local privilege escalation testing including SUID, sudo abuse, and service misconfiguration

Technology & EngineeringEndpoint Agent

os-hardening

143L

OS hardening assessment for Linux and Windows systems against CIS benchmarks

Technology & EngineeringEndpoint Agent

scheduled-task-abuse

160L

Cron job and scheduled task abuse risk assessment and service hijacking

Technology & EngineeringEndpoint Agent

software-inventory

142L

Software inventory anomaly detection, shadow IT discovery, and EOL software identification

Technology & EngineeringEndpoint Agent

exploitability-confirmation

135L

Exploitability confirmation and false positive reduction methodology

Technology & EngineeringExploit Validation Agent

impact-verification

143L

Impact verification, blast radius estimation, and business consequence assessment

Technology & EngineeringExploit Validation Agent

poc-execution

139L

Controlled proof-of-concept execution and safe vulnerability validation

Technology & EngineeringExploit Validation Agent

post-exploitation-mapping

156L

Post-exploitation risk mapping including pivot paths and persistence mechanisms

Technology & EngineeringExploit Validation Agent

vulnerability-assessment

164L

CVE matching, version risk analysis, and misconfiguration detection methodology

Technology & EngineeringExploit Validation Agent

ad-security

156L

Active Directory trust review, Kerberos assessment, and delegation risk analysis for authorized assessments

Technology & EngineeringIdentity Iam Agent

iam-policy-review

163L

IAM policy analysis and least privilege assessment for authorized security assessments

Technology & EngineeringIdentity Iam Agent

mfa-coverage

154L

MFA coverage assessment and bypass risk detection for authorized security assessments

Technology & EngineeringIdentity Iam Agent

privilege-escalation

167L

Privilege escalation path detection in cloud and enterprise environments for authorized assessments

Technology & EngineeringIdentity Iam Agent

role-trust-boundaries

156L

Role trust boundaries, cross-account access, and federation security review for authorized assessments

Technology & EngineeringIdentity Iam Agent

secret-management

162L

Secret sprawl detection, key rotation assessment, and vault configuration review for authorized assessments

Technology & EngineeringIdentity Iam Agent

attribution-support

47L

Alias clustering, language patterns, infrastructure reuse, and confidence-rated attribution

Technology & EngineeringInfrastructure Correlation

decentralized-threat-research

45L

P2P abuse monitoring, wallet-linked fraud, smart contract risk, and cross-platform correlation

Technology & EngineeringInfrastructure Correlation

domain-correlation

46L

Correlate domains, certificates, IPs, and ASNs across adversary campaigns

Technology & EngineeringInfrastructure Correlation

incident-enrichment

47L

Transform raw security alerts into actor hypotheses, motives, next steps, and containment guidance

Technology & EngineeringInfrastructure Correlation

osint-fusion

48L

Merge public web, breach data, passive DNS, social graph, and code repository intelligence

Technology & EngineeringInfrastructure Correlation

endpoint-visibility

129L

Endpoint visibility gap analysis, rogue device detection, and EDR coverage assessment for internal networks

Technology & EngineeringInternal Network Agent

lateral-movement

117L

Lateral movement path analysis, credential relay, and pivot detection for authorized internal network assessments

Technology & EngineeringInternal Network Agent

legacy-protocol-risk

120L

Legacy protocol risk assessment for SMBv1, LLMNR, NetBIOS, Telnet, and other deprecated services

Technology & EngineeringInternal Network Agent

segmentation-review

133L

Network segmentation validation, VLAN hopping, firewall rule review, and micro-segmentation testing

Technology & EngineeringInternal Network Agent

trust-relationships

110L

Domain trust enumeration, shared service abuse, and cross-boundary attack path analysis for authorized assessments

Technology & EngineeringInternal Network Agent

app-transport

154L

App transport security assessment, certificate pinning validation, HSTS enforcement, and TLS configuration review

Technology & EngineeringMobile Client Security

local-storage

157L

Mobile local storage security review, keychain/keystore assessment, and sensitive data exposure detection

Technology & EngineeringMobile Client Security

mobile-api-testing

184L

Mobile API interception, proxy configuration, request manipulation, and backend API security testing

Technology & EngineeringMobile Client Security

reverse-engineering

164L

APK and IPA decompilation, binary analysis, obfuscation review, and tampering detection assessment

Technology & EngineeringMobile Client Security

token-persistence

161L

Mobile token persistence analysis, session management review, and authentication state security

Technology & EngineeringMobile Client Security

host-discovery

123L

Host availability detection and network segmentation mapping for authorized security assessments

Technology & EngineeringNetwork Mapper Agent

network-exposure

137L

Exposure validation and firewall rule assessment for authorized security assessments

Technology & EngineeringNetwork Mapper Agent

port-scanning

123L

Port discovery and service detection with nmap for authorized security assessments

Technology & EngineeringNetwork Mapper Agent

protocol-identification

140L

Protocol fingerprinting and unusual service detection for authorized security assessments

Technology & EngineeringNetwork Mapper Agent

traffic-analysis

144L

Packet capture interpretation, cleartext detection, and traffic analysis with tcpdump and Wireshark

Technology & EngineeringNetwork Mapper Agent

tunneling-validation

139L

Secure tunneling validation, proxy path review, and VPN configuration checks for authorized assessments

Technology & EngineeringNetwork Mapper Agent

credential-attacks

44L

Credential attack techniques for authorized assessments including password spraying, Kerberoasting, NTLM relay, and credential dumping

Technology & EngineeringPentest Exploitation

defense-evasion-testing

44L

Testing detection coverage through AMSI bypass, process injection, and living-off-the-land techniques for detection validation

Technology & EngineeringPentest Exploitation

initial-access

44L

Initial access techniques for authorized penetration tests including phishing, exposed services, and credential attacks

Technology & EngineeringPentest Exploitation

lateral-movement-techniques

44L

Lateral movement techniques for authorized assessments including pass-the-hash, WMI, PSExec, and RDP pivoting

Technology & EngineeringPentest Exploitation

payload-development

45L

Custom payload development for authorized assessments including AV/EDR testing and C2 framework usage

Technology & EngineeringPentest Exploitation

persistence-analysis

45L

Persistence mechanism testing for authorized assessments covering scheduled tasks, registry keys, services, and DLL side-loading

Technology & EngineeringPentest Exploitation

privilege-escalation-techniques

45L

Windows and Linux privilege escalation techniques for authorized penetration testing including kernel exploits, misconfigurations, and token abuse

Technology & EngineeringPentest Exploitation

ad-attack-paths

45L

Active Directory attack path analysis using BloodHound, Certify, and Rubeus for authorized security assessments

Technology & EngineeringPentest Infrastructure

attack-infrastructure

44L

Attack infrastructure setup including redirectors, domain fronting assessment, and phishing infrastructure for authorized engagements

Technology & EngineeringPentest Infrastructure

c2-framework

44L

Command and control framework setup and operation for authorized penetration tests with OPSEC considerations

Technology & EngineeringPentest Infrastructure

cloud-exploitation

44L

Cloud exploitation techniques for authorized assessments covering metadata abuse, SSRF to cloud, and IAM role assumption

Technology & EngineeringPentest Infrastructure

debrief-retesting

46L

Client debrief methodology, remediation validation, retest procedures, and knowledge transfer for penetration testing engagements

Technology & EngineeringPentest Infrastructure

report-writing

45L

Professional penetration test report writing covering executive summary, technical findings, risk ratings, and remediation guidance

Technology & EngineeringPentest Infrastructure

engagement-planning

47L

Rules of engagement definition, scope documentation, authorization validation, and legal compliance for penetration testing

Technology & EngineeringPentest Methodology

external-pentest

45L

External network penetration testing methodology aligned with PTES for authorized security assessments

Technology & EngineeringPentest Methodology

internal-pentest

44L

Internal network penetration testing and assumed breach methodology for authorized security assessments

Technology & EngineeringPentest Methodology

physical-pentest

44L

Physical penetration testing methodology including access control bypass, tailgating assessment, and social engineering for authorized engagements

Technology & EngineeringPentest Methodology

purple-team

44L

Purple team exercise methodology for cooperative adversary simulation and detection validation in authorized engagements

Technology & EngineeringPentest Methodology