Live Demo: Claude Code autonomously investigates Cobalt Strike infection via LimaCharlie MCP
This is a technical demonstration of Claude Code performing an autonomous investigation using LimaCharlie's MCP server integration. Eric Capuano, founder of Digital Defense Institute, walks through a live investigation where Claude Code automatically detects and analyzes a Cobalt Strike compromise across two Windows endpoints. The AI agent follows standard investigation procedures without pre-scripting.