Saprophytic-seattle561/reverse-skill

Map essential cybersecurity and reverse engineering skills with this structured learning path.

1Stars on the repository
84Mods indexed here, across every type
todayLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for AD CS, certificate templates, enrollment rights, EKUs, SAN controls, PKINIT, certificate mapping, and cert-based privilege paths. Use when the user asks about ESC-style abuse, certificate templates, enrollment agents, EKUs, SAN or subject…

not rated 1 today A 118 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for AI-agent, prompt-injection, MCP or toolchain, cloud, container, CI/CD, and supply-chain challenges. Use when the user asks to analyze prompt-to-tool flows, retrieval poisoning, mounted secrets, deployment drift, runtime-vs-manifest…

not rated 1 today A 107 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Android APK hooking, Frida tracing, request-signing recovery, SSL pinning bypass, JNI boundary inspection, and app trust-boundary analysis. Use when the user asks to hook an APK, inspect signer logic, trace Java or native boundaries…

not rated 1 today A 114 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for browser cookies, localStorage, sessionStorage, IndexedDB, Cache Storage, service workers, offline caches, and client-side session persistence. Use when the user asks to inspect browser state, replay cached auth or session behavior…

not rated 1 today A 111 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for source maps, build manifests, chunk registries, emitted bundles, obfuscated loader flow, and frontend runtime recovery. Use when the user asks to reconstruct served JavaScript structure, inspect source maps or chunk maps, trace bundle…

not rated 1 today A 112 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for cloud metadata services, instance identity, workload identity, link-local credential paths, role assumption, and metadata-to-privilege trust edges. Use when the user asks to inspect metadata-service access, instance credentials, pod or…

not rated 1 today A 118 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for live container runtime analysis, mounted secrets, sidecars, namespaces, init containers, entrypoint drift, and route-to-container resolution. Use when the user asks why a live container differs from manifests, where a mounted secret is…

not rated 1 today A 109 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for crypto, encoding, steganography, APK, IPA, and mobile trust-boundary challenges. Use when the user asks to decode a blob, recover a transform chain or key, inspect hidden media payloads, hook an APK or IPA signer, inspect app storage, or…

not rated 1 today A 105 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for custom binary or text protocol recovery, handshake reconstruction, framing, sequence control, checksums, stateful replay, and accepted-session reproduction. Use when the user asks to decode an unknown protocol, recover custom framing…

not rated 1 today A 116 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for DPAPI masterkeys, vault blobs, browser credential stores, protected secrets, domain backup keys, and secret-to-acceptance replay chains. Use when the user asks to inspect DPAPI blobs or masterkeys, recover browser or vault credentials…

not rated 1 today A 116 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for file uploads, imports, previews, archive extraction, format conversion, parser invocation, and deserialization chains. Use when the user asks to inspect an upload or import path, trace archive extraction, preview or converter behavior…

not rated 1 today A 109 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for firmware images, partition tables, boot chains, update packages, extracted filesystems, embedded configs, and device-facing trust boundaries. Use when the user asks to unpack firmware, map partition layout, inspect bootloader or init…

not rated 1 today A 110 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for DFIR chronology, cross-artifact correlation, persistence chains, and incident timeline reconstruction. Use when the user asks to build a forensic timeline, correlate EVTX, PCAP, registry, disk, memory, mailbox, or browser artifacts…

not rated 1 today A 109 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for GraphQL schemas, persisted queries, RPC manifests, generated clients, OpenAPI drift, hidden operations, and contract-to-handler mismatches. Use when the user asks to inspect GraphQL or RPC requests, compare client contracts to live…

not rated 1 today A 114 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Active Directory, Kerberos, LDAP, OAuth, enterprise messaging, Windows host forensics, credential material, and lateral-movement challenges. Use when the user asks to trace tickets or tokens, inspect mailbox rules, analyze Windows host…

not rated 1 today A 110 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for IPA runtime analysis, Frida hooks, Objective-C or Swift method tracing, Keychain inspection, SSL pinning bypass, URL scheme handling, and iOS request-signing recovery. Use when the user asks to hook an IPA, trace Objective-C or Swift…

not rated 1 today A 123 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for JWT, JWS, and JWE validation paths, header parsing, key selection, claim acceptance, audience and issuer checks, role derivation, and token-to-identity confusion bugs. Use when the user asks to inspect JWT headers or claims, key lookup…

not rated 1 today A 128 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Kubernetes API analysis, service-account trust, RBAC edges, admission and controller behavior, cluster secrets, workload mutation, and namespace-scoped drift. Use when the user asks to inspect kube API permissions, service-account tokens…

not rated 1 today A 117 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Kerberos delegation, SPN trust edges, S4U abuse, RBCD, constrained or unconstrained delegation, and service-ticket acceptance. Use when the user asks about constrained delegation, unconstrained delegation, RBCD, S4U, SPNs, ticket…

not rated 1 today A 116 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for kernel attack surface, namespace and cgroup boundaries, container isolation assumptions, syscall paths, and escape primitive verification. Use when the user asks to analyze container-to-host escape paths, kernel exploit prerequisites…

not rated 1 today A 102 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Linux credential artifacts, service tokens, SSH material, cloud and container secrets, socket-level trust, and host-to-host pivot chains. Use when the user asks to trace Linux auth artifacts, accepted token or key replay, socket or…

not rated 1 today B 110 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for LSASS-resident secrets, Windows logon sessions, Kerberos ticket caches, DPAPI-backed material, SSP artifacts, and replayable credential extraction. Use when the user asks to inspect LSASS memory, recover tickets or logon sessions, trace…

not rated 1 today A 123 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for enterprise mail abuse, OAuth consent, inbox or forwarding rules, transport rules, shared mailbox access, phishing chains, and token-to-mailbox side effects. Use when the user asks to trace mailbox rules, OAuth consent grants, forwarding…

not rated 1 today A 119 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for malware configuration recovery, staged payload boundaries, beacon parameter extraction, and IOC decoding. Use when the user asks to recover a malware config, decode C2 or beacon fields, unpack staged payloads, extract bot or campaign IDs…

not rated 1 today A 101 tokens copy · 100% MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: