Abnormal Security Threats

Investigate and remediate Abnormal Security email threats like BEC and phishing.

39|17|Updated Feb 4, 2026
One-click install
npx skills add https://github.com/wyre-technology/msp-claude-plugins --skill abnormal-security-threats
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: Abnormal Security Threats
Source: https://github.com/wyre-technology/msp-claude-plugins/tree/main/msp-claude-plugins/abnormal/abnormal/skills/threats
Command: npx skills add https://github.com/wyre-technology/msp-claude-plugins --skill abnormal-security-threats

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill automates the investigation and remediation of advanced email threats like BEC and phishing that bypass traditional security measures, protecting your organization from financial fraud and data breaches.

Core Features & Use Cases

  • Threat Detection & Analysis: Identifies and categorizes various email threats (BEC, phishing, account takeover, etc.) based on AI behavioral analysis.
  • Automated Remediation: Automatically removes malicious emails from mailboxes to prevent user interaction.
  • Incident Response: Provides detailed threat and message information to aid security teams in their investigations and response actions.
  • Use Case: When a Business Email Compromise (BEC) alert is triggered, this Skill can automatically list all related threats, retrieve the details of the suspicious email, and initiate remediation to remove it from all affected inboxes.

Quick Start

Use the abnormal skill to list all BEC threats detected in the last 24 hours.

Frequently Asked Questions about Abnormal Security Threats

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate incident response for Business Email Compromise threats?

Automate incident response for Business Email Compromise threats by using AI behavioral analysis to detect suspicious emails and automatically remove malicious messages from affected mailboxes. This workflow manages the entire threat lifecycle from detection to remediation.

How does AI threat detection handle phishing emails that bypass traditional security?

AI threat detection handles phishing emails that bypass traditional security by analyzing behavioral patterns to identify anomalous messaging. It categorizes these advanced threats and triggers automated remediation to remove them from user inboxes before interaction occurs.

Can I retrieve detailed message analysis for suspicious email investigations?

Yes, you can retrieve detailed message analysis for suspicious email investigations. The system provides comprehensive threat and message information, including AI behavioral analysis data, to aid security teams in investigating and responding to advanced email attacks.

What is the best way to list all BEC threats detected in the last 24 hours?

The best way to list all BEC threats detected in the last 24 hours is to query the threat case management system. This automatically aggregates all recently detected Business Email Compromise incidents for immediate review and response initiation.

Does automated email remediation work for account takeover attacks?

Yes, automated email remediation works for account takeover attacks. The system detects account compromise indicators using AI analysis and automatically removes malicious emails sent from compromised accounts to prevent further user interaction and data breaches.

Are there limitations when managing email security threats across multiple platforms?

Managing email security threats across multiple platforms requires integration with existing security operations. The system focuses on AI-driven detection and automated remediation workflows, but effective incident response depends on proper configuration of your mail environment and security team oversight.