Security

Threat Briefing

Try it

Generate a daily or weekly cybersecurity threat briefing from open sources. Covers new vulnerabilities, active exploits, ransomware campaigns, APT activity,...

What it does

Generate a concise, actionable cybersecurity threat briefing.

The skill document

Threat Briefing

Generate a concise, actionable cybersecurity threat briefing.

Briefing Structure

# Cybersecurity Threat Briefing
**Date:** [today's date]
**Period:** Last 24-48 hours | Last 7 days
**Analyst:** [agent name]
**TLP:** WHITE

Priority Alerts (if any)

Active exploits or critical vulnerabilities requiring immediate action. Include: CVE ID, affected systems, exploitation status, patch availability.

Top Stories (5-10 items)

For each story:

### [N]. [Headline]
**Category:** Vulnerability | Ransomware | APT | Supply Chain | Policy | Tool Release
**Relevance:** Higher-Ed | SMB | Enterprise | All
**Summary:** [2-3 sentences]
**Action Required:** [Yes/No] - [what to do if yes]
**Source:** [URL]

Vulnerability Watch

New CVEs with CVSS >= 7.0 relevant to common stacks:

  • Linux/Ubuntu
  • Windows Server
  • Network equipment (Cisco, Fortinet, Palo Alto)
  • Web frameworks (Node.js, Python, PHP)
  • Cloud services (AWS, Azure, GCP)

Threat Actor Activity

Any notable APT or criminal group activity in the reporting period. Map to MITRE ATT&CK where possible.

Recommendations

Prioritized action items for a small-to-mid security team:

  1. [Highest priority action]
  2. [Second priority]
  3. [Third priority]

Tailoring

  • For higher-ed: emphasize student data (FERPA), research IP, BYOD risks
  • For SMB: emphasize ransomware, business email compromise, supply chain
  • For SOC operators: emphasize detection rules, IOCs, hunting queries

Sources to Reference

Prefer: CISA KEV, NVD, BleepingComputer, The Record, Krebs on Security, Dark Reading, SecurityWeek, Mandiant/Google TAG, Microsoft MSRC

More from solomonneas

Browse all skills

Essential penetration testing command reference. Quick lookup for nmap, Metasploit, hydra, john, nikto, gobuster, and other offensive security tools. Covers...

by Solomon Neas65 installs1 stars

Memory forensics with Volatility and related tools. Acquire RAM dumps, extract processes and DLLs, investigate rootkits and fileless malware, recover credent...

by solomonneas31 installs1 stars

This skill should be used when the user asks to "run pentest commands", "scan with nmap", "use metasploit exploits", "crack passwords with hydra or john", "s...

by solomonneas36 installs

Expert malware analysis for defensive security research. Static and dynamic analysis, sandbox triage, IOC extraction, unpacking, and malware family identific...

by solomonneas31 installs

Knowledge card memory system with semantic search. Agents wake up fresh each session but remember everything through atomic ~350-token cards with YAML frontm...

by solomonneas28 installs

Network traffic analysis with Wireshark and tshark. Capture packets, write display and BPF filters, follow TCP/UDP/TLS streams, detect C2 beacons, troublesho...

by solomonneas27 installs