AgentHubAgentHub

security-audit

SkillSkillsMP

io.github.kubeshark/kubeshark/security-audit · vmaster

Kubernetes network security audit skill powered by Kubeshark MCP. Use this skill whenever the user wants to audit a cluster for security threats, detect compromised workloads, find malicious traffic patterns, hunt for indicators of compromise (IOCs), check for data exfiltration, identify C2 (command and control) communication, detect cryptomining, find lateral movement, discover credential theft attempts, assess network security posture, or perform threat hunting in Kubernetes. Also trigger when the user mentions security audit, threat detection, compromise assessment, vulnerability scan, "is my cluster compromised", "find malicious traffic", "check for threats", DNS exfiltration, DNS tunneling, port scanning, IMDS access, reverse shell, crypto miner, MITRE ATT&CK, IOC detection, anomaly detection, suspicious traffic, rogue workloads, unauthorized access, or any request to evaluate cluster security through network traffic analysis.

概览

security-audit 是一个Agent Skill,收录自 SkillsMP。本页提供 Cursor、Claude Code 等客户端的安装配置片段。

Agent Skill 是带 SKILL.md 的指令包。安装后,AI 会根据 description 在匹配任务时自动加载,无需每次手动粘贴提示词。

安装

选择你的平台查看安装方式

# 通用 CLI(Cursor / Claude Code / Codex 等均支持)
npx skills add kubeshark/kubeshark@security-audit

使用方式

安装完成后,在对话中直接描述你的任务(或提及技能名称)。Agent 会先读取 SKILL.md 的 description 判断是否启用,再按其中的步骤执行。可用 /skills(Claude Code)或在设置中查看已加载的 Skills。

相关资源

统一 Manifest

{
  "id": "io.github.kubeshark/kubeshark/security-audit",
  "type": "skill",
  "version": "master",
  "displayName": "security-audit",
  "description": "Kubernetes network security audit skill powered by Kubeshark MCP. Use this skill whenever the user wants to audit a cluster for security threats, detect compromised workloads, find malicious traffic patterns, hunt for indicators of compromise (IOCs), check for data exfiltration, identify C2 (command and control) communication, detect cryptomining, find lateral movement, discover credential theft attempts, assess network security posture, or perform threat hunting in Kubernetes. Also trigger when the user mentions security audit, threat detection, compromise assessment, vulnerability scan, \"is my cluster compromised\", \"find malicious traffic\", \"check for threats\", DNS exfiltration, DNS tunneling, port scanning, IMDS access, reverse shell, crypto miner, MITRE ATT&CK, IOC detection, anomaly detection, suspicious traffic, rogue workloads, unauthorized access, or any request to evaluate cluster security through network traffic analysis.",
  "author": {
    "name": "kubeshark",
    "url": "https://github.com/kubeshark"
  },
  "repository": {
    "url": "https://github.com/kubeshark/kubeshark",
    "source": "github",
    "subfolder": "skills/security-audit"
  },
  "homepage": "https://skillsmp.com/skills/kubeshark-kubeshark-skills-security-audit-skill-md",
  "distribution": {
    "packages": [
      {
        "registryType": "source",
        "identifier": "kubeshark/kubeshark@security-audit",
        "version": "master",
        "runtimeHint": "npx skills add"
      }
    ],
    "remotes": []
  },
  "dependencies": [],
  "installTargets": [
    "claude-code",
    "claude-desktop",
    "cursor",
    "codex",
    "vscode"
  ],
  "keywords": [
    "stars:11942"
  ],
  "provenance": {
    "origin": "skillsmp",
    "originalId": "kubeshark-kubeshark-skills-security-audit-skill-md",
    "originalUrl": "https://skillsmp.com/skills/kubeshark-kubeshark-skills-security-audit-skill-md",
    "isOfficial": false,
    "status": "active"
  }
}
security-audit — Agent Skill 安装与配置 · AgentHub