π€ AI Prompts Cheatsheet
Nina Kovacs — LLM Security Analyst
Why AI Changes the Game for Cybersecurity Analysis
AI tools like ChatGPT have revolutionized the way cybersecurity analysts approach their tasks. Leveraging AI can enhance reporting, improve threat detection, and streamline incident response. The ability to quickly generate insights from large volumes of data allows analysts to focus on high-impact threats and improve overall security posture.
Before You Start: How to Set Context Properly
When using AI for cybersecurity analysis, setting the right context is crucial. Clearly define the scope of your inquiry, such as whether you’re looking for threat intelligence, incident response best practices, or specific vulnerabilities. Providing detailed context improves both the relevance and accuracy of the AI-generated responses.
Core Prompts Cheatsheet
Output: Identifies unique attack vectors related to the specified system (like Windows Server, Linux OS, etc.).
Output: Generates a detailed pentest methodology that includes tools, techniques, and suggested best practices.
Output: Provides a concise summary of newly discovered vulnerabilities, their severity, and potential mitigations.
Output: Offers mitigation strategies tailored to the specified vulnerability.
Output: Provides a customizable report structure for documenting incidents.
Weak vs Strong Prompt Examples
Advanced Prompt Techniques
Utilizing advanced prompting techniques can vastly improve your AI interactions. Here are key techniques:
- Role Prompting: Specify the type of expert you want the AI to emulate (e.g., “Act as a cybersecurity analyst.)”
- Chain-of-Thought: Encourage detailed reasoning by asking the AI to explain its thought process.
- Few-Shot Examples: Provide a couple of examples of what you expect in the output to guide the AI more effectively.
Claude vs ChatGPT: Which Works Better For This
While both ChatGPT and Claude have their strengths, ChatGPT excels in generating detailed narratives and explanations, while Claude may process context better in certain multi-turn conversations. Depending on your needs, choose the AI that fits your task best.
Tips for Getting Consistent Results
To enhance output consistency:
- Be specific about your query context.
- Iterative refinement: Adjust prompts based on previous responses.
- Set a character limit when you need concise answers.
Quick Reference: All Prompts in One Place
Hereβs a quick summary of all recommended prompts:
- 1. Common attack vectors for [specific system]
- 2. Step-by-step guide for [specific type] penetration test
- 3. Latest vulnerabilities for [specific software]
- 4. Mitigation strategies for [specific vulnerability]
- 5. Incident response report template