Saprophytic-seattle561/reverse-skill

Map essential cybersecurity and reverse engineering skills with this structured learning path.

1Stars on the repository
83Mods indexed here, across every type
2d agoLast push, which is what freshness is scored on
MITLicence, which decides whether bodies are shown

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for OAuth, OIDC, redirect flows, state or nonce handling, PKCE, token exchange, refresh logic, claim mapping, and accepted login paths. Use when the user asks to trace redirects, callback parameters, scopes, state, nonce, PKCE, refresh…

not rated 1 2d ago A 119 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for packet capture analysis, session reconstruction, application-protocol decoding, stream reassembly, beacon timing, and packet-to-process correlation. Use when the user asks to analyze a PCAP, rebuild TCP or UDP sessions, decode HTTP…

not rated 1 2d ago A 117 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for prompt-injection, retrieval poisoning, memory contamination, planner drift, MCP or tool-boundary abuse, and agent exfiltration challenges. Use when the user asks to analyze prompt injection, retrieval poisoning, memory contamination…

not rated 1 2d ago A 105 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for queues, async workers, cron jobs, delayed tasks, retry behavior, worker-only config drift, and payload-to-side-effect chains. Use when the user asks to trace a queue payload, inspect async job execution, explain worker-only behavior…

not rated 1 2d ago A 121 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for race windows, ordering bugs, idempotency failures, lock gaps, concurrent worker drift, and state inconsistencies that produce decisive effects. Use when the user asks to reproduce timing-sensitive bugs, concurrent state corruption…

not rated 1 2d ago A 105 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for forced-auth coercion, relay chains, target selection, NTLM or related acceptance paths, and coercion-to-privilege transitions. Use when the user asks to trace a coercion primitive, follow a relay path, analyze forced authentication…

not rated 1 2d ago A 119 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for parser differentials, HTTP normalization gaps, ambiguous headers, path decoding drift, transfer-framing mismatches, and request smuggling routes. Use when the user asks to trace proxy and backend parse differences, conflicting path…

not rated 1 2d ago A 109 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for reverse engineering, malware, DFIR, firmware, pwnable, and native exploit challenges. Use when the user asks to reverse a binary, unpack a sample, inspect a memory dump or PCAP, recover malware behavior, debug a crash, or build or verify…

not rated 1 2d ago A 105 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for reverse proxies, Host headers, forwarded headers, vhost routing, websocket upgrades, path-prefix rewriting, base-URL derivation, and multi-node route resolution. Use when the user asks which host or container serves a route, why a…

not rated 1 2d ago A 120 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for SSRF reachability, internal route probing, metadata-service access, credential pivoting, and token-to-accepted-privilege chains. Use when the user asks to trace SSRF sources, internal hosts, metadata endpoints, link-local tokens…

not rated 1 2d ago A 113 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for image, audio, video, document, and container steganography. Use when the user asks to inspect metadata, alpha or palette channels, LSBs, thumbnails, appended trailers, QR fragments, transcoding artifacts, or recover a hidden payload from…

not rated 1 2d ago A 100 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for CI/CD, registry, dependency drift, artifact provenance, image build, release pipeline, and runtime consumer challenges. Use when the user asks to trace dependency drift, registry pulls, malicious packages, build or release tampering, CI…

not rated 1 2d ago A 103 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for SSR, template rendering, route loaders, hydration payloads, server-client render boundaries, and template-to-handler enforcement gaps. Use when the user asks to inspect SSR or template routes, trace render context or hydration data…

not rated 1 2d ago A 111 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for CTF web, API, SSR, frontend, queue-backed app, and routing challenges. Use when the user asks to inspect a site or API, follow real browser requests, debug auth or session flow, trace uploads or workers, find hidden routes, or explain why…

not rated 1 2d ago A 108 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for WebSocket and SSE handshakes, auth material, subscription state, realtime message schemas, reconnect behavior, and frame-driven runtime effects. Use when the user asks to inspect a WebSocket or SSE handshake, decode frames, trace…

not rated 1 2d ago A 114 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for Kerberos, WinRM, SMB, RDP, Windows credential material, replayable tickets, delegation edges, and host-to-host pivot chains. Use when the user asks to replay Kerberos material, trace a WinRM, SMB, or RDP pivot, understand host-to-host…

not rated 1 2d ago A 115 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Default entrypoint and master ctf-sandbox-orchestrator workflow for CTF, exploit, reverse engineering, DFIR, pwnable, crypto, stego, mobile, AI-agent, cloud, container, Active Directory, Windows-host, and identity challenges. Use first when the user presents challenge infrastructure, binaries, prompts, hosts, or…

not rated 1 2d ago A 108 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Codex

Routes reverse engineering, exploitation, penetration testing, malware, mobile, firmware, browser automation, documentation, and security tasks to the appropriate specialist skill. Use when a task spans modules or the correct reverse-skill entrypoint is unclear.

not rated 1 2d ago A 51 tokens copy · 98% MIT

api-security

43

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex needs its repo

Use for authorized security assessment of REST, GraphQL, WebSocket, or SOAP APIs, including discovery, authentication, authorization, rate-limit, and CI/CD testing.

not rated 1 2d ago A 36 tokens copy · 100% MIT

apk-reverse

44

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

A command-line workflow for analysing Android APK files, which are installable Android application packages. It covers reading app code and configuration, changing low-level code, rebuilding the package, and observing the app while it runs.

not rated 1 2d ago A 80 tokens copy · 86% MIT

attack-chain

45

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Use for authorized multi-stage attack-path planning and orchestration when a task spans reconnaissance, initial access, privilege escalation, lateral movement, or impact assessment. Route single-stage tasks directly to their specialist skill.

not rated 1 2d ago A ✓ AI review 43 tokens copy · 91% MIT

binary-diff

46

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

A workflow for comparing two versions of a program and moving function names or other reverse-engineering results from the old version to the new one. A binary is a compiled program file, and symbols are names that identify functions or data.

not rated 1 2d ago A 143 tokens copy · 100% MIT

browser-automation

47

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

An automation skill for controlling web browsers and Windows desktop applications. It supports browser tasks such as opening pages, clicking, filling forms, scraping, screenshots, and login flows, plus GUI work in Windows tools such as IDA Pro and Wireshark.

not rated 1 2d ago A 149 tokens copy · 100% MIT

Saprophytic-seattle561/reverse-skill

Skill Claude CodeCodex

Use for authorized reverse engineering of browser extensions (Chrome/Firefox) including manifest analysis, background workers, and extension-based credential or traffic logic recovery.

not rated 1 2d ago A 34 tokens copy · 100% MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: