.claude/skills/alibabacloud-mining-attack-diagnosisRuntime, accounts, dependencies, permissions, network behavior and task quality remain untested.
Alibaba Cloud Security Center cryptomining (cryptojacking) diagnosis skill. Use when the user reports or suspects a mining infection, receives a mining alert, or asks for mining alert detection, IOC extraction (pool IPs, malicious domains, sample hashes, malicious processes), affected-asset scoping, attack-surface analysis, entry-vector analysis, risk assessment, prioritized remediation reporting, cryptomining incident response, or mining risk detection. Triggers: "mining", "cryptomining", "cryptojacking", "coin m…
These states come from the source or distribution context. None of the entries below are SkillVetAI compatibility test results.
These checks parse the fixed package against dated platform rules. They do not execute the Skill or verify task behavior.
.claude/skills/alibabacloud-mining-attack-diagnosisRuntime, accounts, dependencies, permissions, network behavior and task quality remain untested.
.agents/skills/alibabacloud-mining-attack-diagnosisRuntime, accounts, dependencies, permissions, network behavior and task quality remain untested.
skills/alibabacloud-mining-attack-diagnosisRuntime, accounts, dependencies, permissions, network behavior and task quality remain untested.
This command is recorded from the source ecosystem and resolves the registry's latest release. The fixed release shown on this page should be inspected before adoption.
clawhub install @sdk-team/alibabacloud-mining-attack-diagnosisclawhub inspect @sdk-team/alibabacloud-mining-attack-diagnosis --version 0.0.1This automated, non-executing scan is bound to this release hash. It is not a safety certification and may contain false positives or false negatives.
This is registry-supplied evidence for the recorded release, not an independent SkillVetAI scan. Check the canonical source for the full report, scanner versions, scope, and current moderation state.
The catalog stores hashes and an inventory summary for change detection. It does not republish the package contents.
sha256:a87392af39f185b2410a8fa0dd748a5a3b0f8af00b39c934ff32b22da533c5c9references/detection_flow.mdreferences/mining_indicators.mdreferences/module1_alert_detection.mdreferences/module2_alert_detail_ioc.mdreferences/module3_affected_assets.mdreferences/module4_attack_surface.mdreferences/module5_remediation_best_practices.mdreferences/module6_corroboration.mdreferences/module7_deep_scan.mdreferences/ram-policies.mdscripts/_cli.pyscripts/_constants.pyscripts/mining_investigation.pyscripts/query_alert_detail.pyscripts/query_attack_surface.pyscripts/query_cpu_metrics.pyscripts/query_deep_scan.pyscripts/query_intrusion_trace.pyscripts/query_mining_alerts.pyscripts/requirements.txtskill-card.mdSKILL.md- Initial release of the "alibabacloud-mining-attack-diagnosis" skill for Alibaba Cloud Security Center cryptomining diagnosis. - Implements a strict 6-step SOP for mining detection, IOC extraction, asset scoping, attack surface analysis, risk assessment, and remediation reporting. - Enforces absolute read-only operation; no deletion, modification, or quarantine actions are allowed. - Requires mandatory execution via the provided investigation script; no ad-hoc API or CLI calls permitted. - Structured output with a required URGENT banner and remediation workflow when mining is detected. - Auto-derives account/region if omitted, and robustly handles API errors with explicit warnings.