threat-detection
CommunityDetect network threats with precision.
Software Engineering#network security#threat detection#pcap analysis#port scan#DoS attack#C2 beaconing
Authorpuyanguvic
Version1.0.0
Installs0
System Documentation
What problem does it solve?
This Skill provides exact detection thresholds for identifying malicious network patterns like port scans, DoS attacks, and C2 beaconing, ensuring accurate threat identification.
Core Features & Use Cases
- Port Scan Detection: Identifies port scans based on port entropy, SYN-only ratio, and unique ports.
- DoS Pattern Detection: Detects Denial of Service attacks by analyzing the ratio of maximum to average packets per minute.
- C2 Beaconing Detection: Identifies Command and Control beaconing by analyzing the Coefficient of Variation of inter-arrival times.
- Use Case: Security analysts can use this skill to automatically analyze network traffic logs to pinpoint and classify various types of cyber threats.
Quick Start
Analyze the provided TCP packets to detect any port scan, DoS pattern, or C2 beaconing.
Dependency Matrix
Required Modules
scapy
Components
scriptsreferences
💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: threat-detection Download link: https://github.com/puyanguvic/Argis/archive/main.zip#threat-detection Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.