DamonZS/PE-reverse-skill

A general-purpose cross-platform reverse-engineering tool covering active Web intrusion, Windows PE/EXE/DLL, Android APK, iOS IPA, and API reverse engineering. Supports the complete workflow from static analysis, packer detection, unpacking, and decompilation to source code modification and rebuilding. Use when users send binary files (.exe/.dll/.apk/.ipa/.app) and request reverse engineering, analysis, unpacking, decompilation, modification, repackaging, or finding flags/serial numbers/APIs. Su

This repository also configures its own agents. See what PE-reverse-skill tells them →

20Stars on the repository
98Mods indexed here, across every type
12d agoLast push, which is what freshness is scored on
customA LICENSE file GitHub cannot name, so bodies are not copied

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for malware configuration recovery, staged payload boundaries, beacon parameter extraction, and IOC decoding. Use when the user asks to recover a malware config, decode C2 or beacon fields, unpack staged payloads, extract bot or campaign IDs…

not rated 20 +3 12d ago A 101 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for OAuth, OIDC, redirect flows, state or nonce handling, PKCE, token exchange, refresh logic, claim mapping, and accepted login paths. Use when the user asks to trace redirects, callback parameters, scopes, state, nonce, PKCE, refresh…

not rated 20 +3 12d ago A 119 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for packet capture analysis, session reconstruction, application-protocol decoding, stream reassembly, beacon timing, and packet-to-process correlation. Use when the user asks to analyze a PCAP, rebuild TCP or UDP sessions, decode HTTP…

not rated 20 +3 12d ago A 117 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for prompt-injection, retrieval poisoning, memory contamination, planner drift, MCP or tool-boundary abuse, and agent exfiltration challenges. Use when the user asks to analyze prompt injection, retrieval poisoning, memory contamination…

not rated 20 +3 12d ago A 105 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for queues, async workers, cron jobs, delayed tasks, retry behavior, worker-only config drift, and payload-to-side-effect chains. Use when the user asks to trace a queue payload, inspect async job execution, explain worker-only behavior…

not rated 20 +3 12d ago A 121 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for race windows, ordering bugs, idempotency failures, lock gaps, concurrent worker drift, and state inconsistencies that produce decisive effects. Use when the user asks to reproduce timing-sensitive bugs, concurrent state corruption…

not rated 20 +3 12d ago A 105 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for forced-auth coercion, relay chains, target selection, NTLM or related acceptance paths, and coercion-to-privilege transitions. Use when the user asks to trace a coercion primitive, follow a relay path, analyze forced authentication…

not rated 20 +3 12d ago A 119 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for parser differentials, HTTP normalization gaps, ambiguous headers, path decoding drift, transfer-framing mismatches, and request smuggling routes. Use when the user asks to trace proxy and backend parse differences, conflicting path…

not rated 20 +3 12d ago A 109 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for reverse engineering, malware, DFIR, firmware, pwnable, and native exploit challenges. Use when the user asks to reverse a binary, unpack a sample, inspect a memory dump or PCAP, recover malware behavior, debug a crash, or build or verify…

not rated 20 +3 12d ago A 105 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for reverse proxies, Host headers, forwarded headers, vhost routing, websocket upgrades, path-prefix rewriting, base-URL derivation, and multi-node route resolution. Use when the user asks which host or container serves a route, why a…

not rated 20 +3 12d ago A 120 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for SSRF reachability, internal route probing, metadata-service access, credential pivoting, and token-to-accepted-privilege chains. Use when the user asks to trace SSRF sources, internal hosts, metadata endpoints, link-local tokens…

not rated 20 +3 12d ago A 113 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for image, audio, video, document, and container steganography. Use when the user asks to inspect metadata, alpha or palette channels, LSBs, thumbnails, appended trailers, QR fragments, transcoding artifacts, or recover a hidden payload from…

not rated 20 +3 12d ago A 100 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for CI/CD, registry, dependency drift, artifact provenance, image build, release pipeline, and runtime consumer challenges. Use when the user asks to trace dependency drift, registry pulls, malicious packages, build or release tampering, CI…

not rated 20 +3 12d ago A 103 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for SSR, template rendering, route loaders, hydration payloads, server-client render boundaries, and template-to-handler enforcement gaps. Use when the user asks to inspect SSR or template routes, trace render context or hydration data…

not rated 20 +3 12d ago A 111 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for CTF web, API, SSR, frontend, queue-backed app, and routing challenges. Use when the user asks to inspect a site or API, follow real browser requests, debug auth or session flow, trace uploads or workers, find hidden routes, or explain why…

not rated 20 +3 12d ago A 108 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for WebSocket and SSE handshakes, auth material, subscription state, realtime message schemas, reconnect behavior, and frame-driven runtime effects. Use when the user asks to inspect a WebSocket or SSE handshake, decode frames, trace…

not rated 20 +3 12d ago A 114 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Kerberos, WinRM, SMB, RDP, Windows credential material, replayable tickets, delegation edges, and host-to-host pivot chains. Use when the user asks to replay Kerberos material, trace a WinRM, SMB, or RDP pivot, understand host-to-host…

not rated 20 +3 12d ago A 115 tokens

DamonZS/PE-reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for ZIP and PKZIP archive challenges, legacy ZipCrypto identification, known-plaintext recovery with bkcrack, key-based decryption, and reproducible extraction. Use when the user asks to solve an encrypted ZIP challenge, inspect ZipCrypto…

not rated 20 +3 12d ago A 112 tokens

DamonZS/PE-reverse-skill

Skill Codex

Default entrypoint and master ctf-sandbox-orchestrator workflow for CTF, exploit, reverse engineering, DFIR, pwnable, crypto, stego, mobile, AI-agent, cloud, container, Active Directory, Windows-host, and identity challenges. Use first when the user presents challenge infrastructure, binaries, prompts, hosts, or…

not rated 20 +3 12d ago A 108 tokens

pe-skill-workbench

44

DamonZS/PE-reverse-skill

Skill Codex

Master-first, configuration-driven reverse-analysis routing for local files, endpoint descriptors, interfaces, package ecosystems, and protection reviews. It returns an evidence-oriented workflow with indexed subskills and local helper tools.

not rated 20 +3 12d ago A 45 tokens

api-security

45

DamonZS/PE-reverse-skill

Skill Claude CodeCodex

Use for authorized security assessment of REST, GraphQL, WebSocket, or SOAP APIs, including discovery, authentication, authorization, rate-limit, and CI/CD testing.

not rated 20 +3 12d ago A 36 tokens

apk-reverse

46

DamonZS/PE-reverse-skill

Skill Claude CodeCodex

A command-line workflow for examining Android application packages, known as APK files. It covers unpacking apps, converting compiled code for inspection, editing low-level smali code, rebuilding packages, and observing runtime behavior with Frida.

not rated 20 +3 12d ago A 80 tokens

attack-chain

47

DamonZS/PE-reverse-skill

Skill Claude CodeCodex

Use for authorized multi-stage attack-path planning and orchestration when a task spans reconnaissance, initial access, privilege escalation, lateral movement, or impact assessment. Route single-stage tasks directly to their specialist skill.

not rated 20 +3 12d ago A ✓ AI review 43 tokens

binary-diff

48

DamonZS/PE-reverse-skill

Skill Claude CodeCodex

A workflow for comparing different versions of compiled programs and moving symbol or reverse-engineering results between them. Symbols are names linked to program functions, while binary differences show how compiled code changed.

not rated 20 +3 12d ago A 143 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: