arabic-threat-intel

The only Arabic-first OSINT and threat intelligence skill. Monitor Arabic-language threat actor channels on Telegram, generate bilingual threat reports, search the dark web via Tor, and enumerate subdomains via Certificate Transparency logs. Works for any region — Middle East, Africa, Asia, or global. No API keys required.

Safety Notice

This listing is from the official public ClawHub registry. Review SKILL.md and referenced scripts before running.

Copy this and send it to your AI assistant to learn

Install skill "arabic-threat-intel" with this command: npx skills add abdullah944/threat-intel

Arabic Threat Intelligence

The only Arabic-first OSINT and threat intelligence skill for OpenClaw. Works globally — not limited to any single country or region.

Why This Skill

99% of OSINT skills are English-only. Arabic-speaking analysts, security teams, and researchers lack native-language tooling. This skill bridges that gap with full bilingual (Arabic + English) support.

Commands

Monitor Telegram Channels

Use arabic-threat-intel channel hak994
Use arabic-threat-intel channel anyChannelName --lang both

Scrapes public Telegram channels. Returns posts with timestamps, auto-translates Hebrew/Farsi mentions.

Generate Threat Report

Use arabic-threat-intel report "critical infrastructure"
Use arabic-threat-intel report "ransomware" --lang both

Monitors tracked threat actor channels and generates a structured bilingual threat brief ready for leadership or SOC teams.

Dark Web Search

Use arabic-threat-intel darkweb "company name data leak"
Use arabic-threat-intel darkweb "اسم الشركة تسريب"

Searches dark web indexes via Tor. Accepts Arabic or English queries. Returns .onion links with risk assessment.

CT Log Subdomain Scan

Use arabic-threat-intel scan example.com
Use arabic-threat-intel scan target-domain.org

Passive subdomain discovery via Certificate Transparency logs (crt.sh). Flags takeover candidates, dev/test servers, VPN and admin panels.

Tracked Threat Groups

GroupPlatformOriginTargeting
Fatimion Cyber TeamTelegram @hak994IranInfrastructure, Oil & Gas
313 TeamTelegram @xX313XxTeamIranGovernment sites
Fattah CyberTelegram @fattah_iriliIranTech, Media
Handala HackWebIran (MOIS)Financial, Defense
Various APT34/MuddyWaterMultipleIranTelecom, Energy

Output Options

FlagDescription
--lang arArabic only (RTL output)
--lang enEnglish only
--lang bothBilingual report (default)
--region meMiddle East focus
--region africaAfrica focus
--region allGlobal (default)

Requirements

  • No API keys required for CT log scanning and Telegram monitoring
  • Optional: Tor for dark web search (service tor start)
  • Python 3.10+ (pre-installed with OpenClaw)

Use Cases

  • 🔒 SOC teams monitoring Arabic-language threat actors
  • 🕵️ OSINT investigators tracking dark web activity
  • 📰 Journalists covering cybersecurity in the Middle East
  • 🎓 Security researchers and students learning Arabic OSINT
  • 🏢 Enterprise security teams with MENA exposure
  • 🌍 Any analyst tracking Iran-linked APT groups globally

Security & Ethics

This skill performs passive OSINT only. All sources are publicly accessible:

  • Telegram public channels (t.me/s/)
  • Certificate Transparency logs (crt.sh)
  • Dark web search engines via Tor (Ahmia, OnionLand)

No active exploitation. No unauthorized scanning.

Source Transparency

This detail page is rendered from real SKILL.md content. Trust labels are metadata-based hints, not a safety guarantee.

Related Skills

Related by shared tags or category signals.

Research

Agent Fact Check Verify

嚴謹多來源資訊查核與可信度判定技能。用於「查證/核實/核實這個/是真的嗎/是否正確」類請求,整合政府、官方、主流媒體、事實查核站、X(Twitter)、Reddit 等來源,採用內部 100 分制規則化評分(不對使用者公開分數),並強制 Tavily 優先與明確 fallback 規則。

Registry SourceRecently Updated
2730Profile unavailable
Security

web-recon

Website vulnerability scanner and security audit toolkit. Scan any website for security issues: open ports (nmap), exposed secrets, subdomain enumeration, di...

Registry SourceRecently Updated
5181Profile unavailable
Security

OSINT Social Analyzer

Investigate a username across 1000+ social media platforms and websites using social-analyzer. Use this skill whenever the user wants to look up, investigate...

Registry SourceRecently Updated
4430Profile unavailable
Security

Alerting & Notification System

Centralized alerting and notification system for OpenClaw. Multi-channel alerts, intelligent rules, escalation, and audit.

Registry SourceRecently Updated
7141Profile unavailable