mirror of
https://github.com/mukul975/Anthropic-Cybersecurity-Skills.git
synced 2026-09-14 20:05:22 +03:00
Map all 754 skills to MITRE ATT&CK v19.1
- Add validated mitre_attack frontmatter to all 754 skills (286 distinct techniques), verified against MITRE ATT&CK v19.1 via the official mitreattack-python library: 0 revoked, deprecated, or invalid IDs - Curate precise per-skill technique IDs for forensics, malware-analysis, threat-intel, and red-team skills (e.g. DCSync -> T1003.006, Kerberoasting -> T1558.003, Pass-the-Ticket -> T1550.003) - Reconcile v19.1 tactic restructuring: Defense Evasion split into Stealth (TA0005) and Defense Impairment (TA0112); revoked T1562.* family and T1070.001/.002 remapped to active equivalents (T1685.*) - Normalize word-split tags across 35 skills (remove filename-derived stopword tags, add semantic cybersecurity tags) - Add api-reference.md for 3 skills that were missing it - Update README ATT&CK section with accurate v19.1 tactic distribution
This commit is contained in:
@@ -1,10 +1,12 @@
|
||||
---
|
||||
name: conducting-mobile-app-penetration-test
|
||||
description: 'Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security
|
||||
Testing Guide (MASTG) to identify vulnerabilities in data storage, network communication, authentication, cryptography,
|
||||
and platform-specific security controls. The tester performs static analysis of application binaries, dynamic analysis at
|
||||
runtime, and API security testing to evaluate the complete mobile attack surface. Activates for requests involving mobile
|
||||
app pentest, iOS security assessment, Android security testing, or OWASP MASTG assessment.
|
||||
description: 'Conducts penetration testing of iOS and Android mobile applications
|
||||
following the OWASP Mobile Application Security Testing Guide (MASTG) to identify
|
||||
vulnerabilities in data storage, network communication, authentication, cryptography,
|
||||
and platform-specific security controls. The tester performs static analysis of
|
||||
application binaries, dynamic analysis at runtime, and API security testing to evaluate
|
||||
the complete mobile attack surface. Activates for requests involving mobile app
|
||||
pentest, iOS security assessment, Android security testing, or OWASP MASTG assessment.
|
||||
|
||||
'
|
||||
domain: cybersecurity
|
||||
@@ -31,6 +33,13 @@ nist_csf:
|
||||
- ID.RA-06
|
||||
- GV.OV-02
|
||||
- DE.AE-07
|
||||
mitre_attack:
|
||||
- T1426
|
||||
- T1409
|
||||
- T1521.003
|
||||
- T1633
|
||||
- T1417
|
||||
- T1422
|
||||
---
|
||||
# Conducting Mobile App Penetration Test
|
||||
|
||||
|
||||
Reference in New Issue
Block a user