Cybersecurity Audit & Hardening
/install cybersecurity-audit
Cybersecurity Audit & Hardening
Enterprise-grade security auditing and hardening skill. Covers vulnerability scanning, compliance checks, certificate management, and security report generation.
Audit Modules
1. Web Application Security (OWASP Top 10)
- SQL Injection detection
- XSS (Cross-Site Scripting) scanning
- CSRF protection verification
- SSRF vulnerability assessment
- Authentication bypass detection
- API security (JWT/OAuth misconfigurations)
2. Infrastructure Security
- Port scanning with service fingerprinting
- Open port risk analysis and remediation
- Firewall rule audit and optimization
- Cloud security group misconfiguration detection
- Docker/K8s container security scanning
3. Compliance & Standards
| Standard | Coverage | Report Format |
|---|---|---|
| CIS Benchmarks | Level 1 & 2 | PDF/JSON |
| ISO 27001 | Annex A controls | PDF/Excel |
| GDPR | Article 32 (Security) | |
| 等保2.0 | Level 2 & 3 | PDF/Word |
| PCI DSS | SAQ D | |
| SOC 2 | Trust Service Criteria |
4. TLS/SSL Certificate Management
- Certificate expiration monitoring (30/14/7 day alerts)
- Cipher suite strength analysis
- HSTS/HPKP configuration audit
- Certificate chain validation
- Let's Encrypt auto-renewal integration
5. Vulnerability Intelligence
- Real-time CVE database synchronization (NVD/CNVD)
- Affected component matching (OS, libraries, frameworks)
- CVSS score calculation and prioritization
- Exploit availability tracking (ExploitDB/Metasploit)
- Patch Tuesday update recommendations
6. Ransomware Defense
- Backup strategy assessment (3-2-1 rule)
- File extension monitoring for suspicious changes
- Network segmentation audit
- Endpoint detection configuration review
- Incident response playbook generation
Usage
# Full security audit
openclaw skill run cybersecurity-audit --target example.com --report pdf
# Quick port scan
openclaw skill run cybersecurity-audit --scan ports --target 192.168.1.0/24
# Compliance check
openclaw skill run cybersecurity-audit --compliance cis --level 1
Output
Generates structured security reports with:
- Executive summary
- Detailed findings with CVSS scores
- Remediation steps ordered by priority
- Compliance gap analysis
- Executive dashboard (charts & metrics)
- Make sure OpenClaw is installed (local or Docker)
- Run the install command in chat:
/install cybersecurity-audit - After installation, invoke the skill by name or use
/cybersecurity-audit - Provide required inputs per the skill's parameter spec and get structured output
What is Cybersecurity Audit & Hardening?
企业级网络安全审计与加固技能。覆盖OWASP Top 10漏洞扫描、CIS基准合规检查、TLS/SSL证书管理、端口扫描与渗透测试辅助、GDPR/等保2.0合规评估、勒索软件防护策略生成。内置CVE数据库同步,支持自动化安全报告输出。 It is an AI Agent Skill for Claude Code / OpenClaw, with 18 downloads so far.
How do I install Cybersecurity Audit & Hardening?
Run "/install cybersecurity-audit" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.
Is Cybersecurity Audit & Hardening free?
Yes, Cybersecurity Audit & Hardening is completely free, licensed under MIT-0. You can download, install and use it at no cost.
Which platforms does Cybersecurity Audit & Hardening support?
Cybersecurity Audit & Hardening is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).
Who created Cybersecurity Audit & Hardening?
It is built and maintained by ai-gaoqian (@ai-gaoqian); the current version is v1.0.0.