npx claudepluginhub plurigrid/asi --plugin asiThis skill uses the workspace's default tool permissions.
Email sandboxing detonates suspicious attachments and URLs in isolated environments to detect zero-day malware and evasive phishing payloads. Proofpoint Targeted Attack Protection (TAP) is an industry-leading solution that uses multi-stage sandboxing, URL rewriting, and predictive analysis. This skill covers configuring Proofpoint TAP, integrating with email flow, analyzing sandbox reports, and...
Configures Proofpoint TAP for email sandboxing to detonate attachments/URLs, detect zero-day malware/phishing, tune policies, and integrate with email flow.
Configures Proofpoint TAP for email sandboxing to detonate suspicious attachments and URLs, detecting zero-day malware and evasion. Covers integration, monitoring, and SIEM setup.
Configures email security gateways like Microsoft Defender for Office 365 and Proofpoint to detect spearphishing via impersonation protection and behavioral analysis. Useful for SOC analysts investigating phishing incidents.
Share bugs, ideas, or general feedback.
Email sandboxing detonates suspicious attachments and URLs in isolated environments to detect zero-day malware and evasive phishing payloads. Proofpoint Targeted Attack Protection (TAP) is an industry-leading solution that uses multi-stage sandboxing, URL rewriting, and predictive analysis. This skill covers configuring Proofpoint TAP, integrating with email flow, analyzing sandbox reports, and tuning detection policies.
Recommended attachment policy:
- Detonate: .exe, .dll, .scr, .doc(m), .xls(m), .ppt(m), .pdf, .zip, .rar, .7z, .iso
- Block without detonation: .bat, .cmd, .ps1, .vbs, .js, .wsf, .hta
- Password-protected archives: Attempt common passwords, then quarantine
- Dynamic delivery: Deliver email body, hold attachment until verdict