analyzing-campaign-attribution-evidence

Community

Systematic campaign attribution with evidence.

AuthorYukiIto1999
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Campaign attribution analysis helps investigators determine which threat actor or group is responsible for a cyber operation by systematically evaluating evidence across multiple dimensions and using established analytical models.

Core Features & Use Cases

  • Diamond Model & ACH: structured evaluation of competing hypotheses to quantify confidence.
  • Infrastructure & TTP Analysis: assess infrastructure overlaps, malware similarities, timing, and language artifacts to support attribution decisions.
  • Deliverables: generate structured reports with evidence summaries and actionable insights for threat intel and defense teams.

Quick Start

Identify a campaign, collect relevant evidence, and run through the Diamond Model and ACH steps to produce a weighted attribution assessment.

Dependency Matrix

Required Modules

attackctistix2requests

Components

scriptsreferences

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: analyzing-campaign-attribution-evidence
Download link: https://github.com/YukiIto1999/ctf-sleuth/archive/main.zip#analyzing-campaign-attribution-evidence

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.