hunting-for-anomalous-powershell-execution
mukul975/Anthropic-Cybersecurity-Skills
Analyzes PowerShell Script Block, Module, and process creation logs to flag obfuscated commands, AMSI bypass attempts, encoded payloads, download cradles, and credential theft indicators for SOC threat hunting.