Krishna Kumar
Community@xalgord
Penetration Tester | Bug Bounty Hunter
Agent Skills by Krishna Kumar
Showing 801 vetted skills indexed across 1 GitHub repositories.
implementing-iso-27001-information-security-management
Implements an ISO/IEC 27001:2022 ISMS from scoping through certification and continual improvement.
implementing-pci-dss-compliance-controls
Implements PCI DSS 4.0.1 controls across scoping, segmentation, encryption, access, and monitoring phases.
performing-nist-csf-maturity-assessment
Assess organizational cybersecurity maturity against NIST CSF 2.0 Implementation Tiers and build improvement roadmaps.
implementing-gdpr-data-protection-controls
Implement GDPR technical and organizational controls including DPIAs, data subject rights, and breach notification.
implementing-network-deception-with-honeypots
Deploy and configure network honeypots to detect lateral movement and unauthorized access.
implementing-deception-based-detection-with-canarytoken
Deploy and monitor Canary Tokens via the Thinkst Canary API for deception-based breach detection.
deploying-active-directory-honeytokens
Deploys Active Directory honeytokens and SIEM detection rules for deception-based threat detection.
implementing-llm-guardrails-for-security
Implements input and output validation guardrails for LLM applications using NeMo Guardrails and Presidio.
detecting-ai-model-prompt-injection-attacks
Detects prompt injection attacks on LLM inputs using regex, heuristics, and DeBERTa classification.
testing-llm-prompt-injection-and-jailbreaks
Tests LLM applications for prompt injection, jailbreaks, and system-prompt leakage during authorized penetration tests.
performing-ai-assisted-vulnerability-discovery
Generates LLM-based fuzzing seeds, grammars, and Burp MCP traffic analysis for vulnerability research.
testing-mcp-server-security
Tests MCP servers and clients for tool poisoning, prompt injection, and config trust bypasses.
performing-purple-team-atomic-testing
Executes Atomic Red Team tests and validates SIEM detection coverage against MITRE ATT&CK techniques.
conducting-cloud-incident-response
Responds to security incidents in AWS, Azure, and GCP through identity containment, log analysis, and forensic evidence collection.
detecting-email-account-compromise
Detect compromised O365 and Google Workspace accounts via inbox rules, sign-in logs, and OAuth grants.
analyzing-security-logs-with-splunk
Investigate security incidents using Splunk SPL queries for log correlation and timeline reconstruction.
performing-cloud-incident-containment-procedures
Execute cloud incident containment across AWS, Azure, and GCP by isolating resources and revoking credentials.
eradicating-malware-from-infected-systems
Removes malware, persistence mechanisms, and compromised credentials from infected Windows and Linux systems.
triaging-security-incident-with-ir-playbook
Classify and prioritize security alerts using IR playbooks, severity scoring, and team escalation.
implementing-velociraptor-for-ir-collection
Deploy Velociraptor to collect forensic artifacts from endpoints using VQL queries and hunts.
building-incident-response-playbook
Creates structured incident response playbooks aligned with NIST SP 800-61r3 and SANS PICERL frameworks.
building-incident-timeline-with-timesketch
Build collaborative forensic incident timelines in Timesketch from multi-source event data.
collecting-volatile-evidence-from-compromised-host
Collect volatile forensic evidence from compromised hosts following RFC 3227 order of volatility.
conducting-malware-incident-response
Guides malware incident response from detection through containment, eradication, and recovery.