Search

Security · Reverse engineering and malware

117 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Looks up symbols and addresses in vphone600 release and research kernel datasets, and cross-references XNU source, with findings that separate fact from inference.

Lakr233/vphone-cli15k—~530Automated safety check: PassMITtoday
2

Build, review, debug, reverse-engineer, and package WebHome injected extension scripts for FongMi/WebHome App WebView pages.

webhtv/webhtv1.7k—~2.8kAutomated safety check: PassGPL-3.0today
3

Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.

lingbol088-spec/reverse-flow-skill936—~2.4kAutomated safety check: PassMIT2 mo ago
4

1:1 rebuild of award-winning creative websites (WebGL / scroll-animation / portfolio sites).

boyang-hu/website-rebuild-skill1.4k—~6.1kAutomated safety check: PassMIT1 mo ago
5

Build, review, debug, reverse-engineer data sources for, and package FongMi/WebHome custom homepage single-file HTML.

webhtv/webhtv1.7k—~3.8kAutomated safety check: PassGPL-3.0today
6

Recovers a client-side request signature or anti-bot token just far enough to replay blocked requests in bug bounty testing, starting from a captured packet.

awarexone/Agentic-Bug-Hunter5.3k—~4.7kAutomated safety check: PassMIT3 days ago
7

Guided workflow for authorized penetration testing, vulnerability validation, security reporting, CTF/local sandbox reverse engineering, and user-directed vulnerability research.

lingbol088-spec/ReiPenFlow222—~1.8kAutomated safety check: PassMIT2 mo ago
8

Provides malware analysis and network traffic techniques for CTF challenges.

ljagiello/ctf-skills3.4k1 repo~2.1kAutomated safety check: NotesMIT24 days ago
9

Reverse-engineer missing or incomplete OpenFastTrace system requirements and arc42-style design documentation from a project's user guide, existing documentation, tests, and code.

itsallcode/openfasttrace198—~2.9kAutomated safety check: PassGPL-3.0yesterday
10

Combine multiple individual single-signal DBC files into one combined DBC at the application level.

CSS-Electronics/can-bus-reverse-engineering-skills180—~826Automated safety check: PassMIT2 days ago
11

Decompile NES ROM files (.nes) into C projects that can be rebuilt with dotnes.

jonathanpeppers/dotnes780—~1.6kAutomated safety check: PassMIT15 days ago
12

Expert-level Ghidra reverse engineering for firmware binaries with emphasis on stripped binary analysis, automated function discovery, cryptographic routine identification, authentication logic…

OrbitCurve/firmware-reverse-engineering214—~4.2kAutomated safety check: PassApache-2.01 mo ago
13

Guides evidence-first reverse engineering of compiled programs to find and prove defects, from triage and decompilation to fuzzing, patch diffing and firmware.

tihanyin/REx-skill107—~5.1kAutomated safety check: PassMIT15 days ago
14

A skill your agent uses whenever the user asks the running agent to gain a new capability — phrasings like "build a tool", "add a hook", "give yourself X", "let me <do thing through you", or…

wedow/harness168—~2.4kAutomated safety check: PassMITyesterday
15
15.Re

Reverse engineering session: disassemble, annotate, extract assets, build emulator, port to web.

vgrichina/re-skill165—~2.7kAutomated safety check: PassMIT7 mo ago
16

Specialized in reverse-engineering compiled binaries (JARs, DLLs).

HacktronAI/skills115—~2.2kAutomated safety check: PassMIT4 mo ago
17

A skill your agent uses when answering questions about PseudoForge kernel corpus packs through MCP or local evidence packs, including kernel lifecycle, subsystem, function, callgraph, import/string…

kernullist/PseudoForge162—~3.7kAutomated safety check: PassMIT3 mo ago
18

Walks through reverse engineering Go-compiled malware in Ghidra: parsing buildinfo and pclntab, recovering stripped function names and extracting dependencies.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.8kAutomated safety check: PassApache-2.01 mo ago
19

Maximum-fidelity Python source reconstruction from Nuitka .nbc / NBC/2 files produced by nuitkadecompiler.py.

DimaReverse/nuitka-static-unpacker132—~2kAutomated safety check: PassMIT1 mo ago
20

Connect to a Windows 98 game or app that a person is running in their browser on wine-assembly, then see its screen and play it with mouse and keyboard.

vgrichina/berrry-wine113—~1.9kAutomated safety check: PassMITtoday
21

Reverse JavaScript-based custom DSL/VM interpreters, non-standard WASM-like runtimes, and risk-control engines.

zhaoxuya520/reverse-skill40k3 repos~2.3kAutomated safety check: PassMIT16 days ago
22

Unpacks Electron apps and audits their ASAR contents, window security settings, IPC handlers and hardcoded secrets with a bundled Python analysis script.

ptn1411/skill219—~830Automated safety check: NotesNo licence16 days ago
23

Evidence-based security report generation for firmware assessments.

OrbitCurve/firmware-reverse-engineering214—~4.1kAutomated safety check: PassApache-2.01 mo ago
24

Run and record a hardware experiment on the 2C53T bench using a controlled five-step cycle.

DavidClawson/OpenScope-2C53T116—~1kAutomated safety check: PassGPL-3.0today
25

A skill your agent uses when a user provides a TikTok profile or account link and asks for account analysis, competitor research, content or commerce performance, operational-logic research…

aronhy/tiktok-agent-skills167—~492Automated safety check: PassMIT2 mo ago
26

A skill your agent uses when working with the DecompilerServer MCP server to inspect, search, decompile, analyze, or compare .NET assemblies, especially foreign code such as Unity/RimWorld…

pardeike/DecompilerServer106—~1.5kAutomated safety check: PassMIT7 days ago
27

Professional malware analysis workflow for PE executables and suspicious files.

tsale/awesome-dfir-skills324—~2.5kAutomated safety check: PassApache-2.04 mo ago
28

Covers recovering and verifying the VC7 C runtime, compiler-runtime and D3DX library functions in the TH08 decompilation, with hash-pinned evidence.

N0zoM1z0/th08100—~877Automated safety check: PassMIT19 days ago
29

A skill your agent uses for authorized reverse engineering of browser extensions (Chrome/Firefox) including manifest analysis, background workers, and extension-based credential or traffic logic…

zhaoxuya520/reverse-skill40k2 repos~366Automated safety check: PassMIT16 days ago
30

A skill your agent uses for reverse engineering stripped Go and Rust binaries including runtime recognition, pclntab/moduel data recovery, panic strings, and idiomatic decompilation recovery.

zhaoxuya520/reverse-skill40k2 repos~339Automated safety check: PassMIT16 days ago
31

A skill your agent uses for authorized macOS and Mach-O reverse engineering including codesign, Objective-C/Swift recovery, endpoint security surfaces, and Apple platform malware analysis.

zhaoxuya520/reverse-skill40k2 repos~366Automated safety check: PassMIT16 days ago
32

Debug and emulate specific code fragments or functions using the Unicorn engine.

index-login/MobileRE-Skill123—~1.9kAutomated safety check: PassMIT8 days ago
33

A skill your agent uses when a Granblue Fantasy Relink game patch breaks the GBFR Logs hook — signatures no longer match, "Could not find match for pattern" / "Could not find <offset" warnings…

villith/relink-logs157—~7.5kAutomated safety check: PassMIT13 days ago
34

Systematic static analysis of ELF firmware binaries using command-line tools (file, strings, readelf, objdump, xxd).

OrbitCurve/firmware-reverse-engineering214—~3.2kAutomated safety check: PassApache-2.01 mo ago
35

Extracts app.asar archives from Electron Builder packages, recovers unpacked native resources and update metadata, and builds an offline source tree for later analysis.

ptn1411/skill219—~683Automated safety check: NotesNo licence16 days ago
36

Captures an analyzable sample from a live system when the target leaves no file on disk, by finding abnormal executable memory and the execution context that reached it.

dslsdzc/rev-skills125—~2kAutomated safety check: PassApache-2.03 days ago
37

Master binary analysis patterns including disassembly, decompilation, control flow analysis, and code pattern recognition.

wshobson/agents40k8 repos~2kAutomated safety check: PassMIT3 days ago
38

Competitive Ad Intelligence. An agent skill from zubair-trabzada/ai-ads-claude.

zubair-trabzada/ai-ads-claude267—~4.9kAutomated safety check: PassMIT6 mo ago
39

Master network protocol reverse engineering including packet analysis, protocol dissection, and custom protocol documentation.

wshobson/agents40k8 repos~3.2kAutomated safety check: PassMIT3 days ago
40

A skill your agent uses for authorized reverse engineering of custom binary protocols, Protobuf/gRPC, WebSocket frames, and PCAP-driven protocol recovery.

zhaoxuya520/reverse-skill40k2 repos~620Automated safety check: WarnMIT16 days ago
41

Guides writing, reviewing and tuning YARA-X malware detection rules, covering string selection, performance, false-positive reduction and migration from legacy YARA.

trailofbits/skills7.4k—~5.9kAutomated safety check: PassCC-BY-SA-4.0yesterday
42

Search and contribute to the shared AI-modding knowledge base, where field notes record how specific games were modded, decompiled or reverse-engineered (exact versions, route, engine facts…

rehan-remade/universal-modder5.3k—~1.1kAutomated safety check: PassMITtoday
43

Replaces raw offsets and anonymous fields in a TH08 C++ source reconstruction with evidence-backed names and types, without changing accepted bytes or playable behavior.

N0zoM1z0/th08100—~2.3kAutomated safety check: PassMIT19 days ago
44

函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills.

dslsdzc/rev-skills1251 repo~1.4kAutomated safety check: PassApache-2.03 days ago
45

虚拟化逆向:VT-x/SVM、hypervisor 检测、VMCS/EPT 分析, 以及 Xen / QNX Hypervisor / Jailhouse / ACRN / Bao / Hyper-V·VMBus / XtratuM / LynxSecure / Quest-V 的分区与 vdev 语义。

dslsdzc/rev-skills1251 repo~3.4kAutomated safety check: NotesApache-2.03 days ago
46

减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。

index-login/MobileRE-Skill123—~242Automated safety check: PassMIT8 days ago
47

A skill your agent uses when reverse-engineering or detecting malware — static triage + capa/YARA-X, emulation/DBI/.NET unpacking, dynamic/fileless/Volatility 3 memory analysis, C2 config extraction…

hypnguyen1209/offensive-claude386—~2.3kAutomated safety check: PassMIT10 days ago
48
48.ScaffoldingOfficial

Implementation details for EF Core scaffolding (reverse engineering).

dotnet/efcore15k—~165Automated safety check: PassMITtoday