skills/mukul975/anthropic-cybersecurity-skills/detecting-lateral-movement-in-network/Gen Agent Trust Hub
detecting-lateral-movement-in-network
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides comprehensive instructions and tools for network threat detection using industry-standard platforms like Zeek, Splunk, and Elastic.\n- [COMMAND_EXECUTION]: The workflow involves administrative commands (e.g.,
sudo zeekctl,iptables,wecutil) necessary for configuring network security monitoring and implementing containment measures. These actions align with the stated purpose of the skill.\n- [EXTERNAL_DOWNLOADS]: The documentation references the installation ofsigma-cliandpython-evtxviapip. Both are well-known, legitimate open-source tools within the cybersecurity ecosystem for processing Sigma rules and Windows Event Logs.\n- [DATA_EXPOSURE]: While the skill processes sensitive authentication and network logs, this is its primary function. No logic was found that exfiltrates this data to unauthorized external destinations or exposes credentials inappropriately.
Audit Metadata