LogoClawIndex
CasesSkillsAbout
LogoClawIndex

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.

Skills tagged: cybersecurity

Browse skills that share this tag.

  • triaging-security-incident-with-ir-playbook - Triaging Security Incidents with IR Playbooks
    incident-responsetriageplaybookseverity-classification

    ★ 0 · Updated 2026-09-20

    Classify and prioritize security incidents using structured IR playbooks to determine severity, assign response teams, and initiate response procedures.

    ⚙ Acknowledge security alerts⚙ Enrich alert indicator data⚙ Classify security incident types
  • cyber-validating-backup-integrity-for-recovery - Validating Backup Integrity for Recovery
    cybersecurityincident-responsebackupintegrity

    ★ 2 · Updated 2026-09-19

    Validate backup integrity through hash verification, restore testing, corruption detection, and recoverability checks for disaster recovery and ransomware response.

    ⚙ Generate baseline hash manifests⚙ Verify backup archive integrity⚙ Perform isolated restore testing
  • cybersec-processing-stix-taxii-feeds - Process STIX 2.1 threat intelligence feeds via TAXII 2.1
    cybersecuritystixtaxiithreat-intelligence

    ★ 1 · Updated 2026-09-17

    Ingests, validates, normalizes, and routes STIX 2.1 threat intelligence bundles from TAXII 2.1 servers to target platforms.

    ⚙ Discover TAXII server collections⚙ Fetch STIX bundles with pagination⚙ Parse and validate STIX objects
  • webapp-api-excessive - Assess excessive data exposure in web application APIs
    cybersecurityapi-securityexcessive-data-exposureowasp-api3

    ★ 0 · Updated 2026-09-15

    Identifies excessive data exposure and over-fetching vulnerabilities in API responses using interception proxies and schema analysis.

    ⚙ Intercept API responses⚙ Analyze response schema differences⚙ Extract sensitive fields from JSON
  • red-team-tactics - Adversary simulation principles based on MITRE ATT&CK.
    red-teammitre-attackcybersecurityadversary-simulation

    ★ 1 · Updated 2026-09-14

    Provides principles, attack phases, evasion techniques, and reporting guidance for red team adversary simulation based on MITRE ATT&CK.

    ⚙ Simulate MITRE ATT&CK attack phases⚙ Map target attack surfaces⚙ Escalate system privileges
  • computer-and-information-systems-manager - Computer & Information Systems Manager
    information-systemsit-managementgovernancecybersecurity

    ★ 18 · Updated 2026-09-13

    Plan, direct, and oversee information systems development, operation, and governance to support organizational goals.

    ⚙ Align technology with organizational goals⚙ Develop and maintain system roadmaps⚙ Evaluate technology investment decisions
  • scan-cyber-threats - Retrieve active cyber threat intelligence and vulnerabilities
    cybersecuritythreat-intelligenceiocc2

    ★ 0 · Updated 2026-09-13

    Retrieves active cyber-threat intelligence including malware IOCs, C2 infrastructure, and CISA known-exploited vulnerabilities.

    ⚙ Retrieve cyber threat intelligence⚙ Filter threat indicators by source⚙ Filter threats by severity level
  • helloctf-skill - Hello CTF knowledge base and skill tree
    ctfcybersecurityknowledge-basepenetration-testing

    ★ 4,196 · Updated 2026-09-11

    A CTF cybersecurity knowledge base for locating knowledge points, querying exploit techniques, and planning learning routes.

    ⚙ Locate CTF knowledge points⚙ Query vulnerability exploit techniques⚙ Plan CTF learning routes
  • analyzing-network-flow-data-with-netflow - Analyze network flow data with NetFlow and IPFIX
    analyzingnetworkflowdata

    ★ 3 · Updated 2026-09-11

    Parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns.

    ⚙ Parse NetFlow and IPFIX records⚙ Detect network port scanning⚙ Identify outbound data exfiltration
  • moving-laterally-with-netexec - NetExec Network Penetration Testing
    netexecpenetration-testinglateral-movementsmb

    ★ 3,613 · Updated 2026-06-30

    NetExec tool for SMB, WinRM, LDAP, MSSQL enumeration and remote execution

    ⚙ enumerate SMB shares⚙ enumerate domain users⚙ enumerate password policy
  • backend-security-coder - Secure Backend Coding Expert
    securitybackendauthenticationAPI security

    ★ 2 · Updated 2026-06-30

    Expert in secure backend coding practices specializing in input validation, authentication, and API security

    ⚙ validate inputs⚙ sanitize data⚙ prevent injection attacks
  • monitoring-darkweb-sources - Monitor Dark Web Sources for Threat Intelligence
    cybersecuritythreat-intelligencedark-webOSINT

    ★ 24 · Updated 2026-06-30

    Monitors dark web forums, paste sites, and ransomware leak sites for organizational asset mentions and leaked credentials

    ⚙ configure monitoring keywords⚙ monitor dark web forums⚙ monitor paste sites
  • conducting-cyber-risk-assessment-with-nist-800-30 - Cyber Risk Assessment with NIST 800-30
    cybersecurityrisk-assessmentnist-800-30risk-management

    ★ 70 · Updated 2026-06-30

    Conduct cybersecurity risk assessment using NIST SP 800-30 Rev 1 methodology

    ⚙ define assessment scope⚙ identify threat sources⚙ identify threat events
  • correlating-security-events-in-qradar - QRadar Security Event Correlation
    cybersecuritysiemqradaraql

    ★ 64 · Updated 2026-06-30

    Correlates security events in IBM QRadar SIEM using AQL and custom rules to detect multi-stage attacks

    ⚙ investigate QRadar offenses⚙ query events using AQL⚙ build correlation rules
  • conducting-cyber-risk-assessment-with-nist-800-30 - NIST 800-30 Cyber Risk Assessment
    cybersecurityrisk-assessmentnist-800-30risk-management

    ★ 3,613 · Updated 2026-06-30

    Execute cyber risk assessment using NIST SP 800-30 Rev 1 methodology

    ⚙ define scope⚙ identify threat sources⚙ identify threat events
  • implementing-ot-network-traffic-analysis-with-nozomi - Deploy Nozomi OT Network Traffic Analysis
    cybersecurityot-securityicsnetwork-monitoring

    ★ 3 · Updated 2026-06-15

    Deploy Nozomi Guardian sensors for passive OT network monitoring and threat detection

    ⚙ deploy guardian sensors⚙ monitor network traffic⚙ detect security alerts
  • implementing-ot-network-traffic-analysis-with-nozomi - OT Network Traffic Analysis with Nozomi
    cybersecurityot-securityicsnetwork-monitoring

    ★ 70 · Updated 2026-06-15

    Deploy Nozomi Guardian sensors for passive OT network traffic analysis, asset visibility, and threat detection

    ⚙ deploy guardian sensors⚙ monitor network traffic⚙ detect assets
  • ai - Automated HTTP Security Header Analyst
    cybersecurityHTTP headerssecurity analysisvulnerability assessment

    ★ 365 · Updated 2026-06-15

    Parses humble security reports to identify HTTP header risks and provides remediation code.

    ⚙ Parse humble reports⚙ Identify missing headers⚙ Check header values
  • implementing-anti-ransomware-group-policy - Windows Ransomware Defense via Group Policy
    cybersecurityransomware-defensegroup-policywindows

    ★ 17 · Updated 2026-05-28

    Configures Windows GPO to prevent ransomware execution and spread

    ⚙ configure AppLocker rules⚙ enable Controlled Folder Access⚙ enable Attack Surface Reduction rules
  • implementing-anti-ransomware-group-policy - Configure Windows GPO for Ransomware Prevention
    ransomwaregroup-policywindowsAppLocker

    ★ 327 · Updated 2026-05-28

    Configures Windows Group Policy to block ransomware execution and limit spread via AppLocker, CFA, and ASR rules

    ⚙ configure AppLocker rules⚙ enable Controlled Folder Access⚙ set ASR rules

Scroll to load more