hunt-generic

Official

Systematically hunt threats in PCAP and EVE logs

AuthorStamusNetworks
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Analyzes network traffic data (PCAP and Suricata EVE JSON) to identify high-priority threats and suspicious activity, enabling faster detection and response.

Core Features & Use Cases

  • Structured threat hunting across PCAP and EVE logs, including C2 detection, data exfiltration, DNS tunneling, TLS anomalies, and beaconing.
  • Step-by-step hunts that produce actionable indicators (flow IDs, src/dst IPs, ports) for incident responders.
  • Use cases include SOC threat hunting, incident containment, and validation of IDS rule effectiveness.

Quick Start

Run the provided hunting queries against your PCAP or EVE JSON dataset and review the consolidated findings to begin investigation.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: hunt-generic
Download link: https://github.com/StamusNetworks/stamus-ai-tools/archive/main.zip#hunt-generic

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.