acquiring-disk-image-w…
Create forensically sound bit-for-bit disk images using dd and dcfldd while preserving evidence integrity through
Deploy AI and NLP-powered detection systems to identify business email compromise attacks by analyzing writing
$ npx -y skills add Mikaru0Mystic/sectinel --skill detecting-business-email-compromise-with-ai --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/detecting-business-email-compromise-with-aiContext preview
The summary Claude sees to decide when to auto-load this skill.
Deploy AI and NLP-powered detection systems to identify business email compromise attacks by analyzing writing
name: detecting-business-email-compromise-with-ai description: Deploy AI and NLP-powered detection systems to identify business email compromise attacks by analyzing writing style, behavioral patterns, and contextual anomalies that evade traditional rule-based filters. domain: cybersecurity subdomain: phishing-defense tags: - bec - ai - nlp - machine-learning - email-security - behavioral-analytics - impersonation - fraud-detection version: '1.0' author: mahipal license: Apache-2.0 atlas_techniques: - AML.T0073 - AML.T0052 - AML.T0088 nist_ai_rmf: - GOVERN-6.2 - MAP-5.2 - GOVERN-6.1 - MEASURE-2.7 - MEASURE-2.5 d3fend_techniques: - Sender MTA Reputation Analysis - Email Filtering - Sender Reputation Analysis - Homoglyph Detection - Message Analysis nist_csf: - PR.AT-01 - DE.CM-09 - RS.CO-02 - DE.AE-02
AI-powered BEC detection uses machine learning, NLP, and behavioral analytics to identify sophisticated impersonation attacks that contain no malicious links or attachments. Traditional rule-based filters miss these attacks because BEC relies purely on social engineering. Modern AI approaches analyze writing style, tone, vocabulary, grammatical patterns, and behavioral context to determine if an email genuinely comes from the stated sender. BERT-based models achieve 98.65% accuracy in BEC detection, and AI-enhanced platforms show a 25% increase in phishing identification over keyword-based rules.
Open-source security arsenal for AI coding agents: 784 cybersecurity skills, scanner integrations, and a security MCP for Claude Code, Cursor, opencode, Gemini CLI, Cline, and any agentskills.io agent. Mapped to OWASP, MITRE ATT&CK, NIST CSF, D3FEND, ATLAS.
Repo: Mikaru0Mystic/sectinel
Create forensically sound bit-for-bit disk images using dd and dcfldd while preserving evidence integrity through
Detect dangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and
Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source
Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect BOLA/IDOR attacks, rate limit bypass,
Analyze advanced persistent threat (APT) group techniques using MITRE ATT&CK Navigator to create layered heatmaps
Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrative