BigHugger
sk Skill · mukul975

analyzing-ransomware-network-indicators

Identify ransomware-related network indicators, including C2 beaconing patterns, TOR exit node connections, data exfiltration flows, and encryption key exchange, by analyzing Zeek conn.log and NetFlow data. Use when threat hunting for active ransomware network activity or investigating suspected pre-encryption exfiltration during incident response.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
Pythonnetwork-forensicsexfiltrationnetflowtorzeekc2-beaconingransomware
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python