explainx.ainewsletter3.5k
TrendingNewsPathwaysSkills
Pricing
explainx.ai

Upskill in AI — 16 free pathways, live workshops & bootcamps, and 50+ courses from practitioners. Plus the skills, tools, and MCP servers to practice on.

follow us

corporate training

support@explainx.ai

get started

Find your pathTake Free Evaluation

learn

pathways — start freeworkshopsbootcampscoursescertificationsmock testsexplainx universitycorporate traininglearn skills & mcp

discover

skillsmcp serversexplainx mcptoolsagentsllmsdesignsdictionaryagi trackerranks

company

aboutvisionmissionteaminstructorscommunityhackathonscareers

content

daily AI newsstate of AI — live resultsblogreleasespromptsgeneratorsresource libraryfor LLMsexplainx.ai kids

solutions

all solutionsdeveloper upskillingmarketing upskillingproduct manager upskillingleadership upskilling

newsletter · weekly

Get AI news, tools, and insights in your inbox.

supportprivacytermsdata rightshow we create contentsubmission guidelines

© 2026 AISOLO Technologies Pvt Ltd

home/skills/tag/threat-hunting
skill tag

threat-hunting▌

67 indexed skills · max 10 per page

skills (67)

detecting-mimikatz-execution-patterns

mukul975/Anthropic-Cybersecurity-Skills · detecting-mimikatz-execution-patterns

0

Detect Mimikatz execution through command-line patterns, LSASS access signatures, binary indicators, and in-memory detection of known modules.

detecting-exfiltration-over-dns-with-zeek

mukul975/Anthropic-Cybersecurity-Skills · detecting-exfiltration-over-dns-with-zeek

0

Detect DNS-based data exfiltration by analyzing Zeek dns.log for high-entropy subdomains and anomalous query patterns

building-threat-hunt-hypothesis-framework

mukul975/Anthropic-Cybersecurity-Skills · building-threat-hunt-hypothesis-framework

0

Build a systematic threat hunt hypothesis framework that transforms threat intelligence, attack patterns, and environmental data into testable hunting hypotheses.

detecting-t1548-abuse-elevation-control-mechanism

mukul975/Anthropic-Cybersecurity-Skills · detecting-t1548-abuse-elevation-control-mechanism

0

Detect abuse of elevation control mechanisms including UAC bypass, sudo exploitation, and setuid/setgid manipulation by monitoring registry modifications, process elevation flags, and unusual parent-child process relationships.

hunting-for-data-staging-before-exfiltration

mukul975/Anthropic-Cybersecurity-Skills · hunting-for-data-staging-before-exfiltration

0

Detect data staging activity before exfiltration by monitoring for archive creation with 7-Zip/RAR, unusual temp folder access, large file consolidation, and staging directory patterns via EDR and process telemetry

analyzing-azure-activity-logs-for-threats

mukul975/Anthropic-Cybersecurity-Skills · analyzing-azure-activity-logs-for-threats

0

Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrative operations, impossible travel, privilege escalation, and resource modifications. Builds KQL queries for threat hunting in Azure environments. Use when investigating suspicious Azure tenant activity or building cloud SIEM detections.

hunting-for-dcsync-attacks

mukul975/Anthropic-Cybersecurity-Skills · hunting-for-dcsync-attacks

0

Detect DCSync attacks by analyzing Windows Event ID 4662 for unauthorized DS-Replication-Get-Changes requests from non-domain-controller accounts.

hunting-for-cobalt-strike-beacons

mukul975/Anthropic-Cybersecurity-Skills · hunting-for-cobalt-strike-beacons

0

Detect Cobalt Strike beacon network activity using default TLS certificate signatures (serial 8BB00EE), JA3/JA3S/JARM fingerprints, HTTP C2 profile pattern matching, beacon jitter analysis, and named pipe detection via Zeek, Suricata, and Python PCAP analysis.

detecting-kerberoasting-attacks

mukul975/Anthropic-Cybersecurity-Skills · detecting-kerberoasting-attacks

0

Detect Kerberoasting attacks by monitoring for anomalous Kerberos TGS requests targeting service accounts with SPNs for offline password cracking.

hunting-for-persistence-mechanisms-in-windows

mukul975/Anthropic-Cybersecurity-Skills · hunting-for-persistence-mechanisms-in-windows

0

Systematically hunt for adversary persistence mechanisms across Windows endpoints including registry, services, startup folders, and WMI subscriptions.

prevpage 3 / 7next