npx claudepluginhub plurigrid/asi --plugin asiThis skill uses the workspace's default tool permissions.
Adversaries establish persistence on Linux systems through crontab jobs, systemd service/timer units, LD_PRELOAD library injection, shell profile modifications (.bashrc, .profile), SSH authorized_keys backdoors, and init script manipulation. This skill scans for all known persistence vectors, checks file timestamps and integrity, and correlates findings with auditd logs to build a timeline of p...
Detects and analyzes Linux persistence mechanisms like crontab entries, systemd units, LD_PRELOAD hijacking, bashrc mods, and authorized_keys backdoors using auditd logs for threat hunting.
Detects and analyzes Linux persistence mechanisms including crontab entries, systemd services, LD_PRELOAD hijacks, bashrc modifications, and authorized_keys backdoors using auditd and file integrity monitoring.
Investigates malware persistence mechanisms on Windows and Linux systems using Autoruns, registry analysis, scheduled tasks, and Python scripts. For incident response, threat hunting, and remediation verification.
Share bugs, ideas, or general feedback.
Adversaries establish persistence on Linux systems through crontab jobs, systemd service/timer units, LD_PRELOAD library injection, shell profile modifications (.bashrc, .profile), SSH authorized_keys backdoors, and init script manipulation. This skill scans for all known persistence vectors, checks file timestamps and integrity, and correlates findings with auditd logs to build a timeline of persistence installation.