mukul975/Anthropic-Cybersecurity-Skills
817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works with Claude Code, GitHub Copilot, Codex CLI, Cursor, Gemini CLI & 20+ platforms · 29 security domains · Apache 2.0
About the project
A library of 818 structured cybersecurity skills for AI agents, mapped to six frameworks (MITRE ATT&CK, NIST CSF 2.0, ATLAS, D3FEND, NIST AI RMF, MITRE F3) and compatible with Claude Code, Copilot, Cursor and other platforms.
Useful for
- Attach the library to an AI agent so it suggests the right Volatility3 plugins for a memory dump analysis
- Find Sigma rules for detecting Kerberoasting via skills in the detection domain
- Map an incident to MITRE ATT&CK tactics and NIST CSF 2.0 requirements for a report
README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.
Why it’s trending
- 21 stars so far today, about 53 expected by the end of the day.
- Over the last two days the pace is 1.6× that of the previous week and a half.
- GitHub Trending Python today: #12, +98 stars.
- About 17 forks a day — people are taking the code.
Stars per day
Bars are daily stars, the line is the usual pace. Red marks spike days.
Numbers
- Total stars
- 33,254
- Today
- 21 · ≈ 53 by evening
- Forks
- 4,039
- Issues and pull requests
- 124
- Watchers
- 264
- Language
- Python
- License
- Apache-2.0
- Latest release
- v1.3.0 · June 22, 2026
- Created
- February 25, 2026
- Last push
- August 31, 2026
Star trust
Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.
These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.
Spotted in
- September 23, 2026GitHub Trending Python today: #12, +98 stars
More in this category
-
6.8
mvt-project/mvt
A collection of mobile forensics utilities that gather and analyze traces of compromise on Android and iOS devices, matching them against public indicators of compromise (IOCs). Built by Amnesty International Security…
-
6.2
newliver666/apk-reverse
An Agent Skill for Android APK reverse engineering: unpacking, ad removal, dex patching, repacking, and runtime/server analysis. Loaded by an agent (Claude Code, Codex) while it works.
-
5.0
cloudflare/security-audit-skill
A coding-agent skill that turns the agent into a security auditor, running a multi-phase code audit with independently verified, machine-readable findings.
-
3.3
calesthio/Crucix
A local OSINT terminal that aggregates 27 open-source feeds (satellites, radiation, flights, markets, conflicts, social) into a single Jarvis-style dashboard with a 3D globe, refreshing every 15 minutes.
-
3.2
ejfkdev/ddc
A Rust DEX-to-Java decompiler for Android with progressive analysis: query metadata first and decompile classes on demand instead of a full run. Its output is javac-verified across seven real-world APKs.
-
3.2
YuJunZhiXue/dsh-purge
A local DeepSeek Harness plugin that reversibly patches installed @deepseek-ai packages to strip built-in refusals and swap prompts per model. Intended for red-team research and robustness evaluation in an authorized…