social-engineering▌
13 indexed skills · max 10 per page
performing-phishing-simulation-with-gophish
mukul975/Anthropic-Cybersecurity-Skills · performing-phishing-simulation-with-gophish
GoPhish is an open-source phishing simulation framework used by security teams to conduct authorized phishing awareness campaigns. It provides campaign management, email template creation, landing pag
implementing-dmarc-dkim-spf-email-security
mukul975/Anthropic-Cybersecurity-Skills · implementing-dmarc-dkim-spf-email-security
SPF, DKIM, and DMARC form the three pillars of email authentication. Together they prevent domain spoofing, validate message integrity, and define policies for handling unauthenticated mail. Proper im
offensive-phishing
SnailSploit/Claude-Red · social-engineering
### offensive-phishing - Phishing campaign execution methodology for authorized red team engagements. Covers end-to-end campaign lifecycle: infrastructure provisioni - Practical, repeatable guidance for authorized security work. - Includes procedures, checks, and references for this skill.
offensive-social-engineering
SnailSploit/Claude-Red · social-engineering
### offensive-social-engineering - Social engineering attack techniques beyond email phishing for authorized red team and physical penetration testing engagements. Covers pret - Practical, repeatable guidance for authorized security work. - Includes procedures, checks, and references for this skill.
detecting-business-email-compromise
mukul975/Anthropic-Cybersecurity-Skills · detecting-business-email-compromise
Business Email Compromise (BEC) is a sophisticated fraud scheme where attackers impersonate executives, vendors, or trusted partners to trick employees into transferring funds, sharing sensitive data,
conducting-social-engineering-pretext-call
mukul975/Anthropic-Cybersecurity-Skills · conducting-social-engineering-pretext-call
Plan and execute authorized vishing (voice phishing) pretext calls to assess employee susceptibility to social engineering and evaluate security awareness controls.
conducting-spearphishing-simulation-campaign
mukul975/Anthropic-Cybersecurity-Skills · conducting-spearphishing-simulation-campaign
Spearphishing simulation is a targeted social engineering attack vector used by red teams to gain initial access. Unlike broad phishing campaigns, spearphishing uses OSINT-derived intelligence to craf
analyzing-malicious-url-with-urlscan
mukul975/Anthropic-Cybersecurity-Skills · analyzing-malicious-url-with-urlscan
URLScan.io is a free service for scanning and analyzing suspicious URLs. It captures screenshots, DOM content, HTTP transactions, JavaScript behavior, and network connections of web pages in an isolat
conducting-social-engineering-penetration-test
mukul975/Anthropic-Cybersecurity-Skills · conducting-social-engineering-penetration-test
Design and execute a social engineering penetration test including phishing, vishing, smishing, and physical pretexting campaigns to measure human security resilience and identify training gaps.
executing-phishing-simulation-campaign
mukul975/Anthropic-Cybersecurity-Skills · executing-phishing-simulation-campaign
Executes authorized phishing simulation campaigns to assess an organization's susceptibility to email-based social engineering attacks. The tester designs realistic phishing scenarios, builds credential harvesting infrastructure, sends targeted phishing emails, and tracks open rates, click-through rates, and credential submission rates to measure human security awareness. Activates for requests involving phishing simulation, social engineering assessment, email security testing, or security awareness measurement.