Ctf Crypto
ljagiello/ctf-skills
Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills.
RISC-V 架构逆向:RV32/RV64、压缩指令(RVC)、gp 相对寻址、ABI 与 ecall 系统调用约定、工具链指纹。
$ npx skills add dslsdzc/rev-skills --skill re-riscv -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install dslsdzc/rev-skills re-riscv --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/re-riscv .claude/skills/re-riscv && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "re-riscv" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscv into .claude/skills/re-riscv/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-riscv", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscvType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add dslsdzc/rev-skills --skill re-riscv -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install dslsdzc/rev-skills re-riscv --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/re-riscv .agents/skills/re-riscv && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "re-riscv" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscv into .agents/skills/re-riscv/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-riscv", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-riscv -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install dslsdzc/rev-skills re-riscv --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/re-riscv .cursor/skills/re-riscv && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "re-riscv" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscv into .cursor/skills/re-riscv/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-riscv", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/dslsdzc/rev-skills.git --path .claude/skills/re-riscv--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add dslsdzc/rev-skills --skill re-riscv -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install dslsdzc/rev-skills re-riscv --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/re-riscv .gemini/skills/re-riscv && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "re-riscv" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscv into .gemini/skills/re-riscv/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-riscv", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install dslsdzc/rev-skills re-riscvInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add dslsdzc/rev-skills --skill re-riscv -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/re-riscv .github/skills/re-riscv && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "re-riscv" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscv into .github/skills/re-riscv/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-riscv", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-riscv -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install dslsdzc/rev-skills re-riscv --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/re-riscv .opencode/skills/re-riscv && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "re-riscv" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-riscv into .opencode/skills/re-riscv/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-riscv", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
re-riscvRISC-V 架构逆向:RV32/RV64、压缩指令(RVC)、gp 相对寻址、ABI 与 ecall 系统调用约定、工具链指纹。
Re Riscv is an agent skill from dslsdzc/rev-skills. RISC-V 架构逆向:RV32/RV64、压缩指令(RVC)、gp 相对寻址、ABI 与 ecall 系统调用约定、工具链指纹。 触发词:RISC-V、riscv、RV32、RV64、RVC、压缩指令、ecall、ESP32-C3、GD32V。
Its SKILL.md is about 2.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Embedded systems and Reverse engineering and malware. It works with ESP32, Ghidra, Homebrew and Linux. The repository describes itself as: 122 个逆向工程 AI 技能(可发布、跨平台):恶意软件分析 / 软件逆向 / 固件嵌入式 / 协议逆向 / 移动应用 / 脱壳反混淆 / 软件破解 / 漏洞挖掘 / 托管代码 / 取证情报 / CTF。 The licence is Apache-2.0.
7 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit bd21db8. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
aptbrewdnfFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Re Riscv loads about 2.2k tokens when it runs. Until then it costs about 33 tokens; SKILL.md has 723 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from dslsdzc/rev-skills at commit bd21db8, republished under its Apache-2.0 licence (© dslsdzc). 723 words, ~2,170 tokens.
.claude/skills/re-riscv/SKILL.md (or your agent's skills folder).所有工具先验证再使用。静态分析可免沙箱;qemu 动态执行默认沙箱 + 网络隔离([[re-analyze/platform-tips]] 最高原则)。
apt install ghidra / pacman -S ghidrabrew install --cask ghidra;Windows: 官方 zipanalyzeHeadless -help(headless 模式)或 GUI 导入 RISC-V ELFapt install binutils 等);macOS: brew install binutils 或 LLVM 系 readelf;Windows: WSL 内readelf --versionapt install binutils-riscv64-linux-gnu(提供 riscv64-linux-gnu-objdump;编译链加 gcc-riscv64-linux-gnu,gcc 依赖带入 binutils 包)dnf install binutils-riscv64-linux-gnu gcc-riscv64-linux-gnu(cross-binutils / cross-gcc 源包,提供 riscv64-linux-gnu-objdump;官方仓库无 riscv64-unknown-elf 裸机工具链,裸机反汇编用 riscv64-linux-gnu-objdump,RVC 支持一致)pacman -S riscv64-elf-binutils riscv64-elf-gcc(裸机,提供 riscv64-unknown-elf-objdump)或 pacman -S riscv64-linux-gnu-binutils riscv64-linux-gnu-gcc(用户态)brew install riscv64-elf-binutils riscv64-elf-gcc(homebrew-core,提供 riscv64-unknown-elf-objdump);Windows/WSL: WSL 内 Linux 版binutils-riscv64-linux-gnu → riscv64-linux-gnu-objdump --version(Debian/Ubuntu/Fedora);binutils-riscv64-unknown-elf → riscv64-unknown-elf-objdump --version(Arch/brew,Debian/Ubuntu 需裸机 triplet 时单列该包);objdump 对 RVC 混编流自动识别(2/4 字节)apt install qemu-user / dnf install qemu-user / pacman -S qemu-userbrew install qemu(含用户态);Windows/WSL: WSL 内 Linux 版qemu-riscv64、32 位为 qemu-riscv32;-L <rootfs> 指定动态库/链接器来源,-strace 跟踪系统调用qemu-riscv64 --version、qemu-riscv32 --versionqemu-system-riscv64/32(Debian trixie 起 / Ubuntu 25.10 起独立包 apt install qemu-system-riscv,Ubuntu 24.04 及更早、Debian bookworm 在 qemu-system-misc 内;Fedora / Arch dnf install qemu-system-riscv / pacman -S qemu-system-riscv)-machine virt 或板级模型(-s -S 接 gdb),或 [[re-emulation]] 用 Unicorn 逐指令apt install gdb-multiarch(riscv32/riscv64 目标内置);Fedora dnf install gdb(官方 gdb 支持多目标);Arch pacman -S gdb(内置 multiarch)brew install gdb(需 Developer Tools 授权,见 [[re-analyze/platform-tips]] macOS 分支)或 WSL 内 Linux 版;Windows/WSL: WSL 内 Linux 版gdb-multiarch --version;Fedora/Arch gdb --version;载入固件后 set architecture riscv:rv64(或 riscv:rv32)再 info registers 确认按顺序执行,每步结果存档;动态执行默认沙箱。
架构确认(RV32/RV64 + 字节序):
file target.bin # "RISC-V" + 32-bit/64-bit + little-endian 提示
file target.elf
readelf -h target.elf # Machine=RISC-V (243);Data=little-endian;Flags 含 RVC/浮点 ABI 位
readelf -A target.elf | head # Tag_RISCV_arch 属性,如 rv64imafdcEF_RISCV_RVC(0x1)=含压缩指令;浮点 ABI 位掩码 0x6(0=软浮点、2=单精度 F、4=双精度 D、6=四精度 Q);EF_RISCV_RVE(0x8)=RV32E 精简寄存器入口定位(reset / 启动代码):
readelf -h 的 Entry point)= _start;动态链接程序先经 ld.so(PT_INTERP),断点/分析从 _start 起0x1000(reset stub 再跳 start_addr,默认 DRAM 0x80000000,pflash 固件场景为 0x20000000)——别把 DRAM 基址当 reset 入口;部分 MCU flash 基址形如 0x08000000;异常/中断向量基址在 mtvec(M 态)/ stvec(S 态)CSR,trap 处理代码按 CSR 值定位la sp, ...)→ 拷贝 .data / 清零 .bss → 跳 main(裸机)或 __libc_start_main(Linux)RVC 压缩指令识别(2/4 字节混合,勿固定宽度切割):
gp 相对寻址恢复(lui+addi 对、.sdata/.sbss):
__global_pointer$,一般落在 .sdata 段内,12 位有符号偏移(±2048)覆盖 .sdata/.sbss 小数据区lui gp, %hi(...) + addi gp, gp, %lo(...) 一次设置 → 后续 lw/ld aN, off(gp) 小偏移数据访问(-msmall-data-limit 默认 8 字节以内的全局变量走 gp)readelf -s 查 __global_pointer$ 符号值ABI 识别(整数/浮点 ABI、a0-a7 约定):
e_flags & EF_RISCV_FLOAT_ABI(掩码 0x6) 为准——它是整个 object 的 Float ABI 字段。不能靠浮点指令出现与否反推 soft/hard-float:-march=rv64ifd -mabi=lp64 是合法组合,产物照用 fld/fmul 等硬件浮点指令,但函数参数仍走整数寄存器(实测:lp64 产物用 fmv.d.x fa5, a1 把 a0/a1 搬进浮点寄存器,lp64d 产物直接用 fsd fa0 收浮点寄存器)。浮点指令密度只能佐证 ISA 含 F/D/Q 扩展,不能佐证参数 ABIcannot link object files with different floating-point ABI,标准流程下不存在"按单元确认"的软硬混编产物。逆向中若观察到局部调用约定不同,先考虑手写汇编、非标准 ABI、STO_RISCV_VARIANT_CC、FFI/thunk、或被错误识别的函数边界系统调用边界(ecall + a7 号):
ecall 触发系统调用,号在 a7(x17)、参数 a0-a5、返回 a0;RISC-V 用 asm-generic 编号(read=63、write=64、openat=56、exit=93、mmap=222)——与 x86/ARM 编号不同,别拿其他架构的号套ecall(0x73),往回找 li a7, imm 立即数;Ghidra 反编译中识别系统调用点qemu-riscv64 -strace 直接打印系统调用序列(联动 [[re-tracing]])生态指纹(工具链/库函数特征):
lw/ld off(gp) 数据访问解不出地址,全局变量互不关联、逻辑碎片化;原因——符号剥离后 __global_pointer$ 丢失,或反编译器未推导 gp;对策——从 _start/crt0 的 lui gp+addi gp 序列计算实际 gp 值并在反编译器中标注;有 ELF 时 readelf -s 查 __global_pointer$© dslsdzc, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .claude/skills/re-riscv of dslsdzc/rev-skills.
Open the folder on GitHubat commit bd21db8
Re Riscv next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Re Riscv this skilldslsdzc/rev-skills | 130 | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | |
| Ctf Cryptoljagiello/ctf-skills | 3.4k | — | ~11k | Automated safety check: Notes | MIT | |
| Analyzing Linux Elf Malwaremukul975/Anthropic-Cybersecurity-Skills | 34k | — | ~3.1k | Automated safety check: Warn | Apache-2.0 | |
| Gearcoleco Debuggingdrhelius/Gearcoleco | 142 | — | ~3.5k | Automated safety check: Pass | GPL-3.0 | |
| Ccapwysaid/CameraCapture | 191 | — | ~1.4k | Automated safety check: Pass | MIT | |
| Install Mimi Remotegaixianggeng/mimi-remote | 104 | — | ~2.8k | Automated safety check: Pass | GPL-3.0 |
ljagiello/ctf-skills
Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills.
mukul975/Anthropic-Cybersecurity-Skills
Analyze malicious Linux ELF binaries — botnets, cryptominers, ransomware, and rootkits targeting Linux servers, containers, and cloud infrastructure — through static analysis, dynamic tracing, and…
drhelius/Gearcoleco
Debug and trace ColecoVision and Super Game Module games using the Gearcoleco emulator MCP server.
wysaid/CameraCapture
Install or use the ccap CLI for camera capture, webcam inspection, device listing, frame capture, and video metadata.
gaixianggeng/mimi-remote
安装、配置、配对、迁移、升级、诊断、回滚或卸载 Mimi Remote;在 macOS 上安装和维护 Mimi Remote Mac 菜单栏 App / DMG,或通过 Homebrew、Linux user-systemd 部署 agentd;从源码构建 iPhone/iPad App;配置 Codex 主通道和可选 Claude Code 实验 Runtime。用户提出“安装 Mimi…
puritysb/AgentDeck
Build, install, launch, and configure AgentDeck on connected Android, Apple, ESP32, Stream Deck, Ulanzi Studio, or daemon targets.
dslsdzc/rev-skills
Captures an analyzable sample from a live system when the target leaves no file on disk, by finding abnormal executable memory and the execution context that reached it.
dslsdzc/rev-skills
Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation.
dslsdzc/rev-skills
威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
ELF 格式解析:ehdr/phdr/shdr、GOT/PLT、initarray、符号恢复. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
Frida 动态插桩(桌面+移动统一). An agent skill from dslsdzc/rev-skills.
Categories
RISC-V 架构逆向:RV32/RV64、压缩指令(RVC)、gp 相对寻址、ABI 与 ecall 系统调用约定、工具链指纹。. Re Riscv is an agent skill from dslsdzc/rev-skills.
Re Riscv fits situations like: tasks that involve Embedded systems; tasks that involve Reverse engineering and malware.
Run `npx skills add dslsdzc/rev-skills --skill re-riscv -a claude-code`. Or copy the skill folder (.claude/skills/re-riscv in dslsdzc/rev-skills) into .claude/skills/re-riscv in your project. Claude Code loads it when a task matches its description.
Run `npx skills add dslsdzc/rev-skills --skill re-riscv -a codex`. Or copy the skill folder (.claude/skills/re-riscv in dslsdzc/rev-skills) into .agents/skills/re-riscv in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dslsdzc/rev-skills --skill re-riscv -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/re-riscv, .gemini/skills/re-riscv, .github/skills/re-riscv and .opencode/skills/re-riscv in your project.
Going by SKILL.md and its folder, Re Riscv needs the command-line tools its instructions call (apt, brew and dnf).
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Re Riscv is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.2k tokens (SKILL.md is roughly 8.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Re Riscv: Ctf Crypto (ljagiello/ctf-skills, 3.4k stars), Analyzing Linux Elf Malware (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Gearcoleco Debugging (drhelius/Gearcoleco, 142 stars) and Ccap (wysaid/CameraCapture, 191 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
dslsdzc (a GitHub user) maintains it in dslsdzc/rev-skills, which has 130 GitHub stars. The repository holds 40 skills in this directory. The repository was last updated on October 5, 2026.
Source: dslsdzc/rev-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.