Ctf Osint
ljagiello/ctf-skills
Provides open source intelligence techniques for CTF challenges.
CTF 开源情报(OSINT)技术。当挑战要求从公开信息中找线索——如给定用户名/邮箱追踪身份、给定照片进行地理定位、从历史网页快照中恢复数据时使用。覆盖社交媒体调查、Google Dorking、反向图片搜索、Wayback Machine、DNS 侦察、Tor 中继查询、元数据提取
$ npx skills add wgpsec/AboutSecurity --skill ctf-osint -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install wgpsec/AboutSecurity ctf-osint --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/wgpsec/AboutSecurity.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/ctf/ctf-osint .claude/skills/ctf-osint && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "ctf-osint" agent skill from https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osint into .claude/skills/ctf-osint/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ctf-osint", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osintType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add wgpsec/AboutSecurity --skill ctf-osint -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install wgpsec/AboutSecurity ctf-osint --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/wgpsec/AboutSecurity.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/ctf/ctf-osint .agents/skills/ctf-osint && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "ctf-osint" agent skill from https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osint into .agents/skills/ctf-osint/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ctf-osint", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add wgpsec/AboutSecurity --skill ctf-osint -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install wgpsec/AboutSecurity ctf-osint --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/wgpsec/AboutSecurity.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/ctf/ctf-osint .cursor/skills/ctf-osint && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "ctf-osint" agent skill from https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osint into .cursor/skills/ctf-osint/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ctf-osint", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/wgpsec/AboutSecurity.git --path skills/ctf/ctf-osint--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add wgpsec/AboutSecurity --skill ctf-osint -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install wgpsec/AboutSecurity ctf-osint --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/wgpsec/AboutSecurity.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/ctf/ctf-osint .gemini/skills/ctf-osint && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "ctf-osint" agent skill from https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osint into .gemini/skills/ctf-osint/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ctf-osint", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install wgpsec/AboutSecurity ctf-osintInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add wgpsec/AboutSecurity --skill ctf-osint -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/wgpsec/AboutSecurity.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/ctf/ctf-osint .github/skills/ctf-osint && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "ctf-osint" agent skill from https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osint into .github/skills/ctf-osint/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ctf-osint", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add wgpsec/AboutSecurity --skill ctf-osint -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install wgpsec/AboutSecurity ctf-osint --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/wgpsec/AboutSecurity.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/ctf/ctf-osint .opencode/skills/ctf-osint && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "ctf-osint" agent skill from https://github.com/wgpsec/AboutSecurity/tree/master/skills/ctf/ctf-osint into .opencode/skills/ctf-osint/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ctf-osint", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
ctf-osintCTF 开源情报(OSINT)技术。当挑战要求从公开信息中找线索——如给定用户名/邮箱追踪身份、给定照片进行地理定位、从历史网页快照中恢复数据时使用。覆盖社交媒体调查、Google Dorking、反向图片搜索、Wayback Machine、DNS 侦察、Tor 中继查询、元数据提取
Ctf Osint is an agent skill from wgpsec/AboutSecurity. CTF 开源情报(OSINT)技术。当挑战要求从公开信息中找线索——如给定用户名/邮箱追踪身份、给定照片进行地理定位、从历史网页快照中恢复数据时使用。覆盖社交媒体调查、Google Dorking、反向图片搜索、Wayback Machine、DNS 侦察、Tor 中继查询、元数据提取
Its SKILL.md is about 530 tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files, including reference files (for example `evals/evals.json`, `evals/recall.json` and `references/geolocation-and-media.md`).
It sits in Security, covering Capture the flag and OSINT. The repository describes itself as: Everything for pentest. | 渗透测试知识库,以 AI Agent 可执行的格式沉淀安全方法论。
Read from SKILL.md and the folder at commit d428372. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
curlFrom the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
ip-api.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Ctf Osint loads about 530 tokens when it runs, and up to ~11k if it reads all its reference files. Until then it costs about 38 tokens; SKILL.md has 56 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
Without a licence we can't republish the file, so here is its outline and opening line. It has 56 words (~530 tokens).
SKILL.md and 5 other files (references) in skills/ctf/ctf-osint of wgpsec/AboutSecurity.
Open the folder on GitHubat commit d428372
Ctf Osint next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Ctf Osint this skillwgpsec/AboutSecurity | 1.8k | — | ~530 | Automated safety check: Pass | None | |
| Ctf Osintljagiello/ctf-skills | 3.4k | 1 repos | ~2.3k | Automated safety check: Notes | MIT | |
| Reverse Flowlingbol088-spec/reverse-flow-skill | 940 | — | ~2.4k | Automated safety check: Pass | MIT | |
| Metabigor OSINT Reconj3ssie/metabigor | 1.8k | — | ~2.4k | Automated safety check: Pass | MIT | |
| Penetration Flowlingbol088-spec/ReiPenFlow | 222 | — | ~1.8k | Automated safety check: Pass | MIT | |
| Helloctf SkillProbiusOfficial/Hello-CTF | 4.2k | — | ~387 | Automated safety check: Pass | GPL-3.0 |
ljagiello/ctf-skills
Provides open source intelligence techniques for CTF challenges.
lingbol088-spec/reverse-flow-skill
Guided reverse engineering workflow for binaries, firmware, mobile apps, scripts, document samples, protocol captures, and unknown artifacts.
j3ssie/metabigor
Operates the metabigor CLI to map a target's network ranges, subdomains, ports, related domains, CDNs and archived URLs from free sources without API keys.
lingbol088-spec/ReiPenFlow
Guided workflow for authorized penetration testing, vulnerability validation, security reporting, CTF/local sandbox reverse engineering, and user-directed vulnerability research.
ProbiusOfficial/Hello-CTF
Hello CTF 技能树 —— 基于国内 CTF 竞赛体系整理的全方向攻防知识库。当用户在学习 CTF、备战比赛、解赛题(Web / Crypto / Misc / Pwn / Reverse / AI / 云安全 / 数据安全 / 区块链 / 工控 / 物联网 / 应急响应 / 渗透测试)需要定位知识点、查询利用手法或规划学习路线时使用。也适用于按知识域出题、查漏补缺。
BigBodyCobain/Shadowbroker
Lets an agent query a ShadowBroker OSINT platform for tracked flights, ships, satellites and news, and place its findings on the map as intel pins.
wgpsec/AboutSecurity
A skill your agent uses whenever the user asks to add, absorb, migrate, port, update, merge, compare, or extract security knowledge into the AboutSecurity repository from any external resource such…
wgpsec/AboutSecurity
AD 域环境持久化技术。当已获取域管/本地管理员权限、需要建立持久访问以确保重启或密码更改后仍能回到目标环境时使用。覆盖主机级持久化(计划任务/注册表Run/COM劫持/WMI事件订阅/Windows服务/启动文件夹)、域级持久化(Golden Ticket/Silver Ticket/Skeleton…
wgpsec/AboutSecurity
APT 模拟与情报驱动红队方法论。基于已知 APT 组织的 TTP(MITRE ATT&CK)设计红队行动计划。当需要模拟特定威胁组织、设计高仿真攻击演练、或根据威胁情报制定攻击策略时使用
wgpsec/AboutSecurity
ArgoCD 后渗透方法论:Redis缓存投毒集群接管、SSO认证绕过、未授权API枚举、恶意Application部署、Webhook SSRF、默认凭据利用。
wgpsec/AboutSecurity
C2 Beacon 配置提取与分析。当捕获到 Cobalt Strike/Sliver/Havoc 等 C2 框架的 Beacon 样本、内存 dump、或网络流量时使用。提取 C2 地址、通信协议、Malleable Profile、Watermark 等关键情报。红队视角:了解蓝队如何从 Beacon 提取 IOC 以改进 C2 OPSEC
wgpsec/AboutSecurity
C2框架免杀方法论:分析 C2 源码、搜索检测规则(YARA/Sigma/Snort)、逐规则分析、修改源码绕过检测。当遇到 YARA/Sigma/Snort 规则触发告警、beacon/implant 被杀软检测到时使用。第一步:确认 implant/beacon 语言和架构;第二步:搜索对应检测规则并逐规则分析修改
Categories
CTF 开源情报(OSINT)技术。当挑战要求从公开信息中找线索——如给定用户名/邮箱追踪身份、给定照片进行地理定位、从历史网页快照中恢复数据时使用。覆盖社交媒体调查、Google Dorking、反向图片搜索、Wayback Machine、DNS 侦察、Tor 中继查询、元数据提取. Ctf Osint is an agent skill from wgpsec/AboutSecurity.
Ctf Osint fits situations like: tasks that involve Capture the flag; tasks that involve OSINT.
Run `npx skills add wgpsec/AboutSecurity --skill ctf-osint -a claude-code`. Or copy the skill folder (skills/ctf/ctf-osint in wgpsec/AboutSecurity) into .claude/skills/ctf-osint in your project. Claude Code loads it when a task matches its description.
Run `npx skills add wgpsec/AboutSecurity --skill ctf-osint -a codex`. Or copy the skill folder (skills/ctf/ctf-osint in wgpsec/AboutSecurity) into .agents/skills/ctf-osint in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add wgpsec/AboutSecurity --skill ctf-osint -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ctf-osint, .gemini/skills/ctf-osint, .github/skills/ctf-osint and .opencode/skills/ctf-osint in your project.
Going by SKILL.md and its folder, Ctf Osint needs the command-line tools its instructions call (curl).
SKILL.md names 1 domain. In commands or code: ip-api.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
No licence was found for Ctf Osint or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.
About 530 tokens (SKILL.md is roughly 2.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 10k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Ctf Osint: Ctf Osint (ljagiello/ctf-skills, 3.4k stars), Reverse Flow (lingbol088-spec/reverse-flow-skill, 940 stars), Metabigor OSINT Recon (j3ssie/metabigor, 1.8k stars) and Penetration Flow (lingbol088-spec/ReiPenFlow, 222 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
wgpsec (a GitHub organization) maintains it in wgpsec/AboutSecurity, which has 1,777 GitHub stars. The repository holds 74 skills in this directory. The repository was last updated on October 8, 2026.
Source: wgpsec/AboutSecurity on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.