Marketplace
ir-velociraptor
Endpoint visibility, digital forensics, and incident response using Velociraptor Query Language (VQL) for evidence collection and threat hunting at scale. Use when: (1) Conducting forensic investigations across multiple endpoints, (2) Hunting for indicators of compromise or suspicious activities, (3) Collecting endpoint telemetry and artifacts for incident analysis, (4) Performing live response and evidence preservation, (5) Monitoring endpoints for security events, (6) Creating custom forensic artifacts for specific threat scenarios.
$ 安裝
git clone https://github.com/AgentSecOps/SecOpsAgentKit /tmp/SecOpsAgentKit && cp -r /tmp/SecOpsAgentKit/skills/incident-response/ir-velociraptor ~/.claude/skills/SecOpsAgentKit// tip: Run this command in your terminal to install the skill
Repository

AgentSecOps
Author
AgentSecOps/SecOpsAgentKit/skills/incident-response/ir-velociraptor
4
Stars
0
Forks
Updated1w ago
Added1w ago