hunt-lateral-movement

Community

Detect lateral movement via PsExec and WMI.

Authordandye
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Hunts for lateral movement indicators across a network using PsExec and WMI to identify unauthorized remote execution, service installations, and suspicious network activity.

Core Features & Use Cases

  • Proactive lateral-movement hunting using known techniques (PsExec, WMI, and remote execution indicators).
  • Correlates host processes, command lines, and network activity to surface potential attacker movements.
  • Use case: Security teams proactively hunt enterprise endpoints to detect attackers moving laterally before escalation.

Quick Start

Run a guided lateral-movement hunt against your environment to surface PsExec and WMI signals.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: hunt-lateral-movement
Download link: https://github.com/dandye/ai-runbooks/archive/main.zip#hunt-lateral-movement

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.