threat-report-evaluation

Official

IOC extraction and threat analysis from reports

AuthorrefractionPOINT
Version1.0.0
Installs0

System Documentation

What problem does it solve?

This skill evaluates threat reports to extract IOCs and behaviors, searches for evidence across orgs, and builds LCQL queries, D&R rules, and lookups to drive defense.

Core Features & Use Cases

  • Phase-driven approach: download, parse, hunt IOCs, hunt behaviors
  • Generates LCQL queries and D&R rules per IOC/behavior
  • Focus on data from the report and the target orgs only

Quick Start

Import a threat report URL or text, specify target orgs, and begin IOC extraction and rule generation.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: threat-report-evaluation
Download link: https://github.com/refractionPOINT/lc-ai/archive/main.zip#threat-report-evaluation

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository