Game Automation
rehan-remade/universal-modder
Launch, see and drive a real game so an agent can test its own mods.
崩溃/漏洞样本分析:确定性复现、ASAN/UBSAN 报告解读、输入最小化 (afl-tmin/cmin)、gdb 回溯定位、rr 录制重放、PoC 产出。
$ npx skills add dslsdzc/rev-skills --skill re-crash-triage -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install dslsdzc/rev-skills re-crash-triage --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/re-crash-triage .claude/skills/re-crash-triage && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "re-crash-triage" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triage into .claude/skills/re-crash-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-crash-triage", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triageType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add dslsdzc/rev-skills --skill re-crash-triage -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install dslsdzc/rev-skills re-crash-triage --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/re-crash-triage .agents/skills/re-crash-triage && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "re-crash-triage" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triage into .agents/skills/re-crash-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-crash-triage", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-crash-triage -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install dslsdzc/rev-skills re-crash-triage --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/re-crash-triage .cursor/skills/re-crash-triage && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "re-crash-triage" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triage into .cursor/skills/re-crash-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-crash-triage", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/dslsdzc/rev-skills.git --path .claude/skills/re-crash-triage--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add dslsdzc/rev-skills --skill re-crash-triage -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install dslsdzc/rev-skills re-crash-triage --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/re-crash-triage .gemini/skills/re-crash-triage && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "re-crash-triage" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triage into .gemini/skills/re-crash-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-crash-triage", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install dslsdzc/rev-skills re-crash-triageInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add dslsdzc/rev-skills --skill re-crash-triage -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/re-crash-triage .github/skills/re-crash-triage && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "re-crash-triage" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triage into .github/skills/re-crash-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-crash-triage", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-crash-triage -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install dslsdzc/rev-skills re-crash-triage --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/re-crash-triage .opencode/skills/re-crash-triage && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "re-crash-triage" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-crash-triage into .opencode/skills/re-crash-triage/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-crash-triage", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
re-crash-triage崩溃/漏洞样本分析:确定性复现、ASAN/UBSAN 报告解读、输入最小化 (afl-tmin/cmin)、gdb 回溯定位、rr 录制重放、PoC 产出。
Re Crash Triage is an agent skill from dslsdzc/rev-skills. 崩溃/漏洞样本分析:确定性复现、ASAN/UBSAN 报告解读、输入最小化 (afl-tmin/cmin)、gdb 回溯定位、rr 录制重放、PoC 产出。 触发词:崩溃、crash、ASAN、UBSAN、未定义行为、UAF、堆溢出、越界、段错误、segfault、 core dump、PoC、漏洞分析、崩溃分析。
Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Fuzzing. It works with Linux and macOS. The repository describes itself as: 122 个逆向工程 AI 技能(可发布、跨平台):恶意软件分析 / 软件逆向 / 固件嵌入式 / 协议逆向 / 移动应用 / 脱壳反混淆 / 软件破解 / 漏洞挖掘 / 托管代码 / 取证情报 / CTF。 The licence is Apache-2.0.
5 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit bd21db8. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
aptdnfmakegitcmakebrewFrom the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
github.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Re Crash Triage loads about 1.7k tokens when it runs. Until then it costs about 44 tokens; SKILL.md has 534 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check noted patterns worth knowing about, such as sudo or a known installer.
- clang: `sudo apt install clang` / `sudo dnf install clang` / `sudo pacman -S clang` / macOS Xcode 自带- gcc: Debian/Ubuntu `sudo apt install gcc`(ASAN 内置在 gcc,无独立包);Fedora `sudo dnf install gcc`;Arch `sudo pacman -S gcc`- Debian/Ubuntu: `sudo apt install gdb`- Fedora/RHEL: `sudo dnf install gdb`- Arch: `sudo pacman -S gdb`- Debian/Ubuntu: `sudo apt install rr`(universe 仓库)- Fedora/RHEL: `sudo dnf install rr`TYPE=Release ../rr && make -j$(nproc) && sudo make installsudo sysctl kernel.perf_event_paranoid=1- 确实需要原始 core 文件时再临时改:`sudo sysctl kernel.core_pattern=core`(core 落到进程工作目录,注意只对之后启动的进程生效)Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from dslsdzc/rev-skills at commit bd21db8, republished under its Apache-2.0 licence (© dslsdzc). 534 words, ~1,702 tokens.
.claude/skills/re-crash-triage/SKILL.md (or your agent's skills folder).所有工具先验证再使用。复现崩溃是动态执行,默认沙箱内跑([[re-analyze/platform-tips]] 最高原则,见 [[re-sandbox]])。
sudo apt install clang / sudo dnf install clang / sudo pacman -S clang / macOS Xcode 自带sudo apt install gcc(ASAN 内置在 gcc,无独立包);Fedora sudo dnf install gcc;Arch sudo pacman -S gccgcc -fsanitize=address,undefined -g -fno-omit-frame-pointer -o target_asan target.c(clang 参数相同)AddressSanitizer 字样sudo apt install gdbsudo dnf install gdbsudo pacman -S gdbbrew install gdb(需 codesign 授权);Xcode 自带 lldb 亦可(见 [[re-lldb]])gdb --versionsudo apt install rr(universe 仓库)sudo dnf install rrparu -S rr(AUR 包;官方仓库无 rr)git clone https://github.com/rr-debugger/rr && mkdir rr/obj && cd rr/obj
cmake -DCMAKE_BUILD_TYPE=Release ../rr && make -j$(nproc) && sudo make installperf_event_paranoid > 1 时超慢,先放开:sudo sysctl kernel.perf_event_paranoid=1rr check 会检查 PMU/perf_event 可用性与已知限制,通过后再用;嵌套虚拟化、未透传 PMU 的容器里 rr 无法录制valgrind --tool=helgrind 或 -fsanitize=thread 构建定位;纯 ASLR 抖动可先 set disable-randomization on 排除rr --versionafl-tmin / afl-cmin 随包安装)afl-cmin 尤其重要): afl-cmin 需要目标可被 AFL 观测——通常要求它由 AFL 插桩构建(afl-clang-fast / afl-gcc),否则会报「无插桩 / not instrumented」而失败。afl-tmin 的约束弱得多(可按纯崩溃判据工作),未插桩目标通常也能跑gcc -fsanitize=address -g)而没有走 afl-clang-fast 时,afl-cmin 不保证能跑。先确认构建方式;不是 AFL 编译器产出时,改用 afl-tmin 逐个最小化,或回 [[re-fuzzing]] 重建插桩版本afl-tmin -h / afl-cmin -h按顺序执行;崩溃输入与 PoC 先 sha256 存证([[re-triage]] 方法)。
sha256sum crash_input > crash_input.sha256
./target < crash_input # stdin 输入
./target crash_input # 文件输入
./target -f crash_input # 按目标实际参数形态ulimit -c unlimited;cat /proc/sys/kernel/core_pattern 若指向 systemd-coredump/apport 则 core 会被系统收走(见坑 4)-fsanitize=address -g -fno-omit-frame-pointer 构建,见工具准备):heap-buffer-overflow / stack-buffer-overflow / global-buffer-overflow:越界读写——报告含越界方向(READ of size N / WRITE of size N)与越界偏移heap-use-after-free:UAF——看 freed by 与 allocated by 两段栈,找释放点与再使用点attempting double-free:重复释放SEGV:空指针/野指针访问,细节需 gdb 补(第 4 步)#0 帧是崩溃点,别只看行号——结合数据流向判断是哪个输入字节导致afl-tmin -i crash_input -o crash.min -- ./target @@
# 多个崩溃输入先按路径去重(需 AFL 插桩,见工具准备):
afl-cmin -i crashes_dir -o minimized -- ./target @@@@ 只适用于「文件参数」目标(AFL 把 @@ 替换成输入文件路径)。目标是 stdin 读输入时不要用 @@,把「文件 → stdin」这一步补进命令行,例如:afl-tmin -i crash_input -o crash.min -- sh -c './target < "$1"' _ @@-f <file> 之类文件参数时用它替代 @@;先按第 1 步确认过的真实输入形态选写法gdb -q ./target
(gdb) set disable-randomization on # 关 ASLR 便于地址对照
(gdb) run crash.min
(gdb) bt # 完整回溯
(gdb) info registers # 崩溃点寄存器
(gdb) x/16i $pc # 崩溃点反汇编gdb -q ./target /path/to/corebt 全是 ??(无符号):记模块基址 + 偏移,进 [[re-ghidra]] / [[re-ida]] 反编译补帧(见坑 5)rr record ./target crash_input
rr replay # 打开 gdb 会话
(rr) continue # 跑回崩溃点
(rr) bt
(rr) reverse-continue # 崩溃前反向执行找根因crash.min + sha256 + 复现命令(环境:ASAN 构建参数、运行参数、输入通道)out/crashes/)交本技能分析(本技能也反向使用其 afl-tmin/cmin 工具链)rr record ./target input)在崩溃点自动停止,rr replay + reverse-continue 反向定位根因;先 set disable-randomization on 排除 ASLR 因素-fsanitize=undefined 抓 UB;影响与可达性判断以真实 release 行为为准(ASAN 报出的是潜在漏洞,需确认)ulimit -c unlimited 后崩溃仍无 core 文件;原因——core_pattern 指向 systemd-coredump(管道方式)/apport 拦截;对策——先 cat /proc/sys/kernel/core_pattern 确认落点,再按落点取回:core_pattern 形如 |/usr/lib/systemd/systemd-coredump ...:core 已被 systemd 接管,不要急着改全局设置,直接取用即可——coredumpctl list 找条目(按可执行名/时间),coredumpctl info <PID|可执行名> 看元数据,coredumpctl dump <PID> -o core 导出,或 coredumpctl gdb <PID> 直接进 gdb 调试。这比改 core_pattern 更完整,也不影响系统上其它程序的 core 行为/var/crash/,用 apport-unpack 展开sudo sysctl kernel.core_pattern=core(core 落到进程工作目录,注意只对之后启动的进程生效)gdb --args ./target crash.min 直接跑,不依赖 core 文件bt 全 ??、地址对不上;原因——strip / 静态链接 / 二进制与 core 版本不一致;对策——core 与二进制必须同版本(对比 sha256);记录崩溃模块基址与偏移,在 [[re-ghidra]] / [[re-ida]] 按偏移定位函数,换算回 gdb 地址© dslsdzc, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .claude/skills/re-crash-triage of dslsdzc/rev-skills.
Open the folder on GitHubat commit bd21db8
Re Crash Triage next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Re Crash Triage this skilldslsdzc/rev-skills | 135 | — | ~1.7k | Automated safety check: Notes | Apache-2.0 | |
| Game Automationrehan-remade/universal-modder | 6.5k | — | ~1.9k | Automated safety check: Pass | MIT | |
| Ctf Cryptoljagiello/ctf-skills | 3.4k | — | ~11k | Automated safety check: Notes | MIT | |
| Os Hardware Inventorycdxgen/cdxgen | 1.1k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | |
| Forensics OsqueryAgentSecOps/SecOpsAgentKit | 220 | 1 repos | ~4.9k | Automated safety check: Notes | Custom licence | |
| Bumblebeesickn33/agentic-awesome-skills | 47k | 1 repos | ~2.5k | Automated safety check: Notes | MIT |
rehan-remade/universal-modder
Launch, see and drive a real game so an agent can test its own mods.
ljagiello/ctf-skills
Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills.
cdxgen/cdxgen
Collects live operating-system inventory (OBOM) and host hardware inventory (HBOM) as CycloneDX documents using the cdxgen obom and hbom commands, including osquery-backed runtime artifacts, Linux…
AgentSecOps/SecOpsAgentKit
SQL-powered forensic investigation and system interrogation using osquery to query operating systems as relational databases.
sickn33/agentic-awesome-skills
Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs.
mukul975/Anthropic-Cybersecurity-Skills
Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware artifacts in Windows, Linux, and macOS memory images.
dslsdzc/rev-skills
Captures an analyzable sample from a live system when the target leaves no file on disk, by finding abnormal executable memory and the execution context that reached it.
dslsdzc/rev-skills
Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation.
dslsdzc/rev-skills
威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
ELF 格式解析:ehdr/phdr/shdr、GOT/PLT、initarray、符号恢复. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
Frida 动态插桩(桌面+移动统一). An agent skill from dslsdzc/rev-skills.
Categories
崩溃/漏洞样本分析:确定性复现、ASAN/UBSAN 报告解读、输入最小化 (afl-tmin/cmin)、gdb 回溯定位、rr 录制重放、PoC 产出。. Re Crash Triage is an agent skill from dslsdzc/rev-skills.
Re Crash Triage fits situations like: tasks that involve Fuzzing.
Run `npx skills add dslsdzc/rev-skills --skill re-crash-triage -a claude-code`. Or copy the skill folder (.claude/skills/re-crash-triage in dslsdzc/rev-skills) into .claude/skills/re-crash-triage in your project. Claude Code loads it when a task matches its description.
Run `npx skills add dslsdzc/rev-skills --skill re-crash-triage -a codex`. Or copy the skill folder (.claude/skills/re-crash-triage in dslsdzc/rev-skills) into .agents/skills/re-crash-triage in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dslsdzc/rev-skills --skill re-crash-triage -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/re-crash-triage, .gemini/skills/re-crash-triage, .github/skills/re-crash-triage and .opencode/skills/re-crash-triage in your project.
Going by SKILL.md and its folder, Re Crash Triage needs the command-line tools its instructions call (apt, dnf, make, git, cmake and brew).
SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found notes only (runs commands with sudo), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.
Re Crash Triage is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.7k tokens (SKILL.md is roughly 6.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Re Crash Triage: Game Automation (rehan-remade/universal-modder, 6.5k stars), Ctf Crypto (ljagiello/ctf-skills, 3.4k stars), Os Hardware Inventory (cdxgen/cdxgen, 1.1k stars) and Forensics Osquery (AgentSecOps/SecOpsAgentKit, 220 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
dslsdzc (a GitHub user) maintains it in dslsdzc/rev-skills, which has 135 GitHub stars. The repository holds 40 skills in this directory. The repository was last updated on October 5, 2026.
Source: dslsdzc/rev-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.