Updated 2026-09-17
Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks that use reverse proxy kits to bypass MFA and steal session tokens.
Browse skills that use this input.
Updated 2026-09-17
Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks that use reverse proxy kits to bypass MFA and steal session tokens.
★ 2 · Updated 2026-09-12
Detect insider threat behavioral indicators including unusual data access, off-hours activity, mass file downloads, privilege abuse, and data theft.
★ 4 · Updated 2026-09-12
Detect Mimikatz execution through command-line patterns, LSASS access signatures, binary indicators, and in-memory detection of known modules.
★ 4 · Updated 2026-09-11
Detect Cobalt Strike beacon network activity using default TLS signatures, fingerprints, HTTP C2 profile matching, and jitter analysis.