LogoClawIndex
CasesSkillsAbout
LogoClawIndex

attack-ent-t1572-protocol-tunneling - Analyze MITRE ATT&CK T1572 Protocol Tunneling

Analyze MITRE ATT&CK T1572 Protocol Tunneling for TTP triage, detection engineering, threat hunting, and defensive emulation planning.

Tags

Updated: 2026-09-17
enterprisecommand-and-controlT1572protocol-tunnelingmitre-attack

Capabilities

Clarify analysis scope and assetsMap user evidence to ATT&CKProduce defensive analysis outputsRender Markdown defensive brief

Typical Inputs

User evidence and log sourcesTarget platform detailsBundled reference files

Typical Outputs

Detection engineering briefsThreat hunt plansIncident response notes

What this skill does

  • Clarify analysis scope and assets
  • Map user evidence to ATT&CK
  • Produce defensive analysis outputs
  • Render Markdown defensive brief

Inputs

  • User evidence and log sources
  • Target platform details
  • Bundled reference files

Outputs

  • Detection engineering briefs
  • Threat hunt plans
  • Incident response notes
  • ATT&CK coverage assessments
  • Rendered Markdown brief file

Requirements

  • Python environment

Source

  • Spec: SKILL.md

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.