Reverse Flow
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
Hello CTF 技能树 —— 基于国内 CTF 竞赛体系整理的全方向攻防知识库。当用户在学习 CTF、备战比赛、解赛题(Web / Crypto / Misc / Pwn / Reverse / AI / 云安全 / 数据安全 / 区块链 / 工控 / 物联网 / 应急响应 / 渗透测试)需要定位知识点、查询利用手法或规划学习路线时使用。也适用于按知识域出题、查漏补缺。
$ npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install ProbiusOfficial/Hello-CTF helloctf-skill --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
Claude Code skills documentation · loads skills from .claude/skills/
Install the "helloctf-skill" agent skill from https://github.com/ProbiusOfficial/Hello-CTF/tree/main into .claude/skills/helloctf-skill/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "helloctf-skill", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install ProbiusOfficial/Hello-CTF helloctf-skill --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "helloctf-skill" agent skill from https://github.com/ProbiusOfficial/Hello-CTF/tree/main into .agents/skills/helloctf-skill/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "helloctf-skill", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install ProbiusOfficial/Hello-CTF helloctf-skill --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "helloctf-skill" agent skill from https://github.com/ProbiusOfficial/Hello-CTF/tree/main into .cursor/skills/helloctf-skill/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "helloctf-skill", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install ProbiusOfficial/Hello-CTF helloctf-skill --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "helloctf-skill" agent skill from https://github.com/ProbiusOfficial/Hello-CTF/tree/main into .gemini/skills/helloctf-skill/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "helloctf-skill", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install ProbiusOfficial/Hello-CTF helloctf-skillInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "helloctf-skill" agent skill from https://github.com/ProbiusOfficial/Hello-CTF/tree/main into .github/skills/helloctf-skill/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "helloctf-skill", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install ProbiusOfficial/Hello-CTF helloctf-skill --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "helloctf-skill" agent skill from https://github.com/ProbiusOfficial/Hello-CTF/tree/main into .opencode/skills/helloctf-skill/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "helloctf-skill", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
helloctf-skillHello CTF 技能树 —— 基于国内 CTF 竞赛体系整理的全方向攻防知识库。当用户在学习 CTF、备战比赛、解赛题(Web / Crypto / Misc / Pwn / Reverse / AI / 云安全 / 数据安全 / 区块链 / 工控 / 物联网 / 应急响应 / 渗透测试)需要定位知识点、查询利用手法或规划学习路线时使用。也适用于按知识域出题、查漏补缺。
Helloctf Skill is an agent skill from ProbiusOfficial/Hello-CTF. Hello CTF 技能树 —— 基于国内 CTF 竞赛体系整理的全方向攻防知识库。当用户在学习 CTF、备战比赛、解赛题(Web / Crypto / Misc / Pwn / Reverse / AI / 云安全 / 数据安全 / 区块链 / 工控 / 物联网 / 应急响应 / 渗透测试)需要定位知识点、查询利用手法或规划学习路线时使用。也适用于按知识域出题、查漏补缺。
Its SKILL.md is about 390 tokens, which your agent loads only when the skill is triggered. The skill folder holds 954 other files (for example `.github/workflows/ghdeploy.yml`, `README.md` and `admin/README.md`).
It sits in Security, covering Capture the flag. The repository describes itself as: 【Hello CTF】题目配套,免费开源的CTF入门教程,针对0基础新手编写,同时兼顾信息差的填补,对各阶段的CTFer都友好的开源教程,致力于CTF和网络安全的开源生态!. The licence is GPL-3.0.
3 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit c7a9ab7. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships script files (Python, from the files we listed), which the agent can run.
From the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
hello-ctf.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Helloctf Skill loads about 387 tokens when it runs. Until then it costs about 51 tokens; SKILL.md has 81 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from ProbiusOfficial/Hello-CTF at commit c7a9ab7, republished under its GPL-3.0 licence (© ProbiusOfficial). 81 words, ~387 tokens.
.claude/skills/helloctf-skill/SKILL.md (or your agent's skills folder). This skill also uses 950 other files; get the full folder from GitHub.基于国内 CTF 竞赛体系整理的 13 个方向、150+ 知识域的攻防知识库。
docs/hc-skill/<方向>/index.md,按其「知识域路由表」的触发特征进一步路由到具体知识域文件。不要在未确认方向时通读全部文件 —— 先路由,再加载。
| 方向 | 索引文件 | 触发特征 |
|---|---|---|
| WEB · Web安全 | web | HTTP 应用、注入、XSS、上传、SSRF、认证绕过 |
| CRYPTO · 密码学 | crypto | 古典密码、RSA/ECC、哈希、伪随机数、格密码 |
| MISC · 安全杂项 | misc | 隐写、流量分析、取证、编解码、压缩包 |
| PWN · 二进制安全 | pwn | 栈/堆溢出、格式化字符串、内核、异构架构 |
| REVERSE · 逆向工程 | reverse | 静态/动态分析、反混淆、脱壳、多语言逆向 |
| AI · 人工智能安全 | ai | 对抗样本、模型窃取、数据投毒、越狱 |
| CLD · 云安全 | cld | 容器逃逸、IAM 提权、云原生、DevOps |
| DS · 数据安全 | ds | 数据分类分级、传输/存储安全、脱敏、DLP |
| ETH · 区块链安全 | eth | 智能合约审计、重入、溢出、交易分析 |
| ICS · 工控安全 | ics | PLC、SCADA 协议、固件逆向、控制逻辑 |
| IOT · 物联网安全 | iot | 固件提取、无线协议、硬件调试接口 |
| IR · 应急响应 | ir | 日志分析、流量分析、入侵排查 |
| PEN · 渗透测试 | pen | 信息搜集、漏洞利用、提权、横向移动 |
技能树的可视化浏览与最新内容见 https://hello-ctf.com。
© ProbiusOfficial, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 950 other files in the repository root of ProbiusOfficial/Hello-CTF.
Open the folder on GitHubat commit c7a9ab7
Helloctf Skill next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Helloctf Skill this skillProbiusOfficial/Hello-CTF | 4.2k | — | ~387 | Automated safety check: Pass | GPL-3.0 | |
| Reverse Flowlingbol088-spec/reverse-flow-skill | 936 | — | ~2.4k | Automated safety check: Pass | MIT | |
| Ctf Osintljagiello/ctf-skills | 3.4k | 2 repos | ~2.3k | Automated safety check: Notes | MIT | |
| Penetration Flowlingbol088-spec/ReiPenFlow | 222 | — | ~1.8k | Automated safety check: Pass | MIT | |
| Alibabacloud Ecs Sec Kernelaliyun/alibabacloud-ecs-troubleshoot-skills | 148 | 1 repos | ~2.4k | Automated safety check: Notes | Apache-2.0 | |
| Ctf Malwareljagiello/ctf-skills | 3.4k | 1 repos | ~2.1k | Automated safety check: Notes | MIT |
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
ljagiello/ctf-skills
Provides open source intelligence techniques for CTF challenges.
lingbol088-spec/ReiPenFlow
Guided workflow for authorized penetration testing, vulnerability validation, security reporting, CTF/local sandbox reverse engineering, and user-directed vulnerability research.
aliyun/alibabacloud-ecs-troubleshoot-skills
Linux 内核态 CVE 漏洞检测与 PoC 验证工具,专为 AI Agent 设计. An agent skill from aliyun/alibabacloud-ecs-troubleshoot-skills.
ljagiello/ctf-skills
Provides malware analysis and network traffic techniques for CTF challenges.
Pa55w0rd/secknowledge-skill
Web+AI 安全测试知识库。融合 WooYun 88,636 案例 + 先知 L1-L4 方法论 + GAARM 173 风险 + OWASP Top 10 (LLM/ASI/WSTG)。
Categories
Hello CTF 技能树 —— 基于国内 CTF 竞赛体系整理的全方向攻防知识库。当用户在学习 CTF、备战比赛、解赛题(Web / Crypto / Misc / Pwn / Reverse / AI / 云安全 / 数据安全 / 区块链 / 工控 / 物联网 / 应急响应 / 渗透测试)需要定位知识点、查询利用手法或规划学习路线时使用。也适用于按知识域出题、查漏补缺。. Helloctf Skill is an agent skill from ProbiusOfficial/Hello-CTF.
Helloctf Skill fits situations like: tasks that involve Capture the flag.
Run `npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a claude-code`. Or copy the skill folder (the ProbiusOfficial/Hello-CTF repository) into .claude/skills/helloctf-skill in your project. Claude Code loads it when a task matches its description.
Run `npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a codex`. Or copy the skill folder (the ProbiusOfficial/Hello-CTF repository) into .agents/skills/helloctf-skill in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ProbiusOfficial/Hello-CTF --skill helloctf-skill -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/helloctf-skill, .gemini/skills/helloctf-skill, .github/skills/helloctf-skill and .opencode/skills/helloctf-skill in your project.
Going by SKILL.md and its folder, Helloctf Skill needs Python for the scripts in its folder. Our summary lists: Python 3.
SKILL.md names 1 domain. As links in the text: hello-ctf.com. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Helloctf Skill is published under the GPL-3.0 licence (from the LICENSE file in the skill folder). It allows redistribution, so the full SKILL.md is shown on this page.
About 387 tokens (SKILL.md is roughly 1.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Helloctf Skill: Reverse Flow (lingbol088-spec/reverse-flow-skill, 936 stars), Ctf Osint (ljagiello/ctf-skills, 3.4k stars), Penetration Flow (lingbol088-spec/ReiPenFlow, 222 stars) and Alibabacloud Ecs Sec Kernel (aliyun/alibabacloud-ecs-troubleshoot-skills, 148 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
ProbiusOfficial (a GitHub user) maintains it in ProbiusOfficial/Hello-CTF, which has 4,236 GitHub stars. The repository was last updated on October 8, 2026.
Source: ProbiusOfficial/Hello-CTF on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.