Skip to main content

Are you dandye? Claim your skills.

Verified badgeInstall analyticsFork attributionSecurity scoreGitHub sync

dandye dandye / deep-dive-ioc

87

Enables comprehensive analysis of critical Indicators of Compromise (IOCs) for escalated investigations, enhancing threat detection and attribution.

openclaw
100
100

dandye dandye / hunt-apt

87

Proactively hunts for TTPs and IOCs associated with specific APT groups using threat intelligence and SIEM data.

openclaw
100
100

dandye dandye / hunt-ioc

87

Proactively hunts for specific Indicators of Compromise (IOCs) across environments using threat intelligence for enhanced security monitoring.

openclaw
100
100

dandye dandye / hunt-threat

87

Enables advanced threat hunting through hypothesis-driven analysis, leveraging threat intelligence and iterative search methodologies.

openclaw
100
100

dandye dandye / respond-compromised-account

87

Facilitates structured response to compromised user accounts, ensuring investigation, containment, and recovery from security incidents.

openclaw
100
100

dandye dandye / respond-malware

87

Facilitates malware incident response using the PICERL methodology, ensuring effective triage, containment, eradication, and recovery.

openclaw
100
100

dandye dandye / respond-phishing

87

Facilitates structured response to phishing incidents using the PICERL methodology, ensuring effective identification and containment.

openclaw
100
100

dandye dandye / respond-ransomware

87

Facilitates structured response to ransomware incidents using the PICERL methodology, ensuring effective identification and recovery.

openclaw
100
100

dandye dandye / triage-alert

87

Assesses security alerts to determine threats, enriches context, and decides on escalation or closure based on gathered evidence.

openclaw
100
100

dandye dandye / triage-malware

87

Analyzes suspected malware file hashes, providing insights and recommendations for containment and investigation.

openclaw
100
100

dandye dandye / full-triage-alert

87

Orchestrates a complete Tier 1 alert triage process, enabling efficient alert management and escalation for security analysts.

openclaw
92
100

dandye dandye / full-investigation

87

Facilitates comprehensive Tier 2 investigations of escalated security cases, orchestrating deep analysis and reporting.

openclaw
92
100

dandye dandye / enrich-ioc

87

Enriches Indicators of Compromise (IOCs) with threat intelligence, providing reputation, context, and match status for enhanced security analysis.

openclaw
92
98

dandye dandye / hunt-credential-access

87

Proactively hunts for credential access techniques using MITRE ATT&CK framework to identify potential credential harvesting activities.

openclaw
92
85

dandye dandye / hunt-lateral-movement

87

Proactively hunts for lateral movement in networks using PsExec and WMI, identifying suspicious activities and potential threats.

openclaw
92
100

dandye dandye / triage-suspicious-login

87

Assists in triaging suspicious login alerts by analyzing user history and login patterns to determine escalation needs.

openclaw
83
100

dandye dandye / close-case-artifact

87

Facilitates the closure of cases or alerts with necessary documentation and reasons, ensuring proper incident management.

openclaw
75
100

dandye dandye / correlate-ioc

87

Correlates Indicators of Compromise with existing SIEM alerts and case management entries to enhance threat investigation and response.

openclaw
75
100

dandye dandye / check-duplicates

87

Identifies duplicate or similar cases to streamline analysis and avoid redundant investigations in case management.

openclaw
67
100

dandye dandye / analyze-content-gaps

87

Identifies content gaps and opportunities by analyzing existing documentation against user needs and competitive benchmarks.

claude-codecursor
67
100