threat-detection

Community

Detect network threats with precision.

Authorpuyanguvic
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This Skill provides exact detection thresholds for identifying malicious network patterns like port scans, DoS attacks, and C2 beaconing, ensuring accurate threat identification.

Core Features & Use Cases

  • Port Scan Detection: Identifies port scans based on port entropy, SYN-only ratio, and unique ports.
  • DoS Pattern Detection: Detects Denial of Service attacks by analyzing the ratio of maximum to average packets per minute.
  • C2 Beaconing Detection: Identifies Command and Control beaconing by analyzing the Coefficient of Variation of inter-arrival times.
  • Use Case: Security analysts can use this skill to automatically analyze network traffic logs to pinpoint and classify various types of cyber threats.

Quick Start

Analyze the provided TCP packets to detect any port scan, DoS pattern, or C2 beaconing.

Dependency Matrix

Required Modules

scapy

Components

scriptsreferences

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: threat-detection
Download link: https://github.com/puyanguvic/Argis/archive/main.zip#threat-detection

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.