cyber-intelligence

Correlate CVE data, MITRE ATT&CK techniques, and social OSINT for threat intelligence.

1|Updated Dec 30, 2025
One-click install
npx skills add https://github.com/statick88/dotfiles --skill cyber-intelligence
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: cyber-intelligence
Source: https://github.com/statick88/dotfiles/tree/main/opencode/skills/cyber-intelligence
Command: npx skills add https://github.com/statick88/dotfiles --skill cyber-intelligence

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes references (resource) components.

What problem does it solve?

This Skill automates the gathering and correlation of threat intelligence data, enabling faster identification and mitigation of cyber threats.

Core Features & Use Cases

  • Vulnerability Analysis: Quickly assess the severity and exploitability of CVEs using CVSS and EPSS scores.
  • Threat Mapping: Correlate identified threats with the MITRE ATT&CK framework for tactical understanding.
  • OSINT Gathering: Monitor social media for real-time discussions and proof-of-concepts related to emerging threats.
  • Use Case: When a new CVE is disclosed, use this Skill to immediately understand its risk, check for existing exploits, and see how it maps to known adversary techniques.

Quick Start

Analyze the vulnerability CVE-2023-12345 by checking its EPSS score and exploit status.

Frequently Asked Questions about cyber-intelligence

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I analyze a specific CVE vulnerability and check its exploitability?

To analyze a CVE vulnerability, this Skill gathers threat intelligence by checking CVSS and EPSS scores to assess severity and exploitability, while monitoring social OSINT for proof-of-concept exploits.

Can I map detected adversary behavior to the MITRE ATT&CK framework?

Yes, you can map detected adversary behavior to the MITRE ATT&CK framework. This Skill correlates identified threats with tactical framework techniques to provide a structured understanding of attacker patterns.

What is threat intelligence gathering and how does OSINT monitoring work for emerging threats?

Threat intelligence gathering automates the correlation of CVE database queries and social OSINT monitoring. It tracks real-time social media discussions and proof-of-concepts to identify emerging cyber threats quickly.

Do I need external intelligence feeds to perform comprehensive vulnerability analysis?

Yes, comprehensive vulnerability analysis requires integration with external intelligence feeds and social media monitoring tools to gather, correlate, and assess advanced threat data effectively.

How do I assess the severity of a newly disclosed CVE using threat intelligence?

You assess the severity of a newly disclosed CVE by gathering threat intelligence data. This Skill automates checking CVSS and EPSS scores to determine risk levels and checking exploit availability.

What are the limitations of using OSINT for threat mapping and vulnerability analysis?

The primary limitation is dependency on external intelligence feeds and social media monitoring tools. Without these integrations, the Skill cannot gather the real-time OSINT data required for comprehensive threat mapping.