Video & Animation

ida-reverse

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

hardware-security

github.com

Use for authorized hardware and embedded interface security research including UART/JTAG discovery, debug pad triage, secure boot overview, and offline firmware extraction support.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

identity-federation

github.com

Use for authorized assessment of federated identity systems including SAML, OIDC, OAuth2 flows, SSO misconfiguration, and token confusion issues.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

js-reverse

github.com

在使用 js-reverse-mcp 做前端 JavaScript 逆向时使用,适用于签名链路定位、页面观察取证、运行时采样、本地补环境复现与证据化输出。优先适配当前环境里的 js-reverse_* 工具,需要更强的浏览器/CDP/Hook 面时联动 jshookmcp。

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

macos-reverse

github.com

Use for authorized macOS and Mach-O reverse engineering including codesign, Objective-C/Swift recovery, endpoint security surfaces, and Apple platform malware analysis.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

malware-analysis

github.com

Use when analyzing suspected malware through static, dynamic, and behavioral techniques, including IOC extraction, YARA or Sigma rules, sandboxing, and anti-analysis behavior.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

go-rust-reverse

github.com

Use for reverse engineering stripped Go and Rust binaries including runtime recognition, pclntab/moduel data recovery, panic strings, and idiomatic decompilation recovery.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

reverse-engineering

github.com

Provides reverse engineering techniques. Use when the main job is to understand how a compiled, obfuscated, packed, or virtualized target works before exploiting or solving it, including binaries, APKs, WASM, firmware, custom VMs, bytecode, malware-like loaders, and anti-debug or anti-analysis logic. Do not use it when the vulnerability is already understood and the remaining task is exploitation; use pwn instead. Do not use it for pure web workflows, log or disk forensics, or standalone crypto problems unless reversing the implementation is the real blocker.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

radio-sdr

github.com

Use for authorized RF/SDR security research including signal identification, replay feasibility study in shielded labs, and wireless protocol analysis outside classic Wi-Fi.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

supply-chain-security

github.com

Use for software supply-chain security assessment covering SBOM, SCA, CI/CD pipelines, container images, build integrity, dependency provenance, and vulnerability reachability.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

pwn-chain

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

mobile-reverse

github.com

Use for authorized Android or iOS application reverse engineering and security testing, including APK or IPA analysis, runtime instrumentation, SSL pinning, and platform protection checks.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

bilibili/ijkplayer

github.com

Android/iOS video player based on FFmpeg n3.4, with MediaCodec, VideoToolbox support.

$ npx skills add bilibili/ijkplayer
スキルを見る

windows-ad

github.com

Use for authorized Active Directory and Windows identity attacks including Kerberos, AD CS, BloodHound paths, NTLM relay, and domain privilege escalation research.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

huggingface/diffusers

33.8kgithub.com

Use before opening a PR, or whenever asked to self-review a diffusers contribution. Applies the same rubric as the `@claude` CI (checks the diff against references/review-rules.md, traces call paths for dead code). Reports findings grouped by severity, flagging what to fix before submitting (blocking issues + dead code) vs what to leave for the actual review. Report-only — does not edit files.

$ npx skills add huggingface/diffusers
スキルを見る

threat-intelligence

github.com

Use for authorized OSINT and cyber threat intelligence that enriches IOCs, campaigns, impersonation, scams, or threat actors from public sources. Includes bounded X/Twitter search through Xquik, source preservation, corroboration, and evidence handoff.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

wifi-wireless

github.com

Use for authorized wireless security assessment including Wi-Fi capture, WPA handshake analysis, rogue AP detection research, and lab-only deauth testing.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

ot-ics

github.com

Use for authorized OT/ICS security assessment covering Purdue model zoning, PLC/SCADA exposure, industrial protocol discovery, and safe passive-first evaluation.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

threat-hunting

github.com

Use for blue-team threat hunting, detection engineering with Sigma/YARA, SIEM query design, and incident detection validation.

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

self-improve

github.com

Autonomous evolutionary code improvement engine with tournament selection

$ npx skills add Yeachan-Heo/oh-my-claudecode
スキルを見る

skill

github.com

Manage local skills - list, add, remove, search, edit, setup wizard

$ npx skills add Yeachan-Heo/oh-my-claudecode
スキルを見る

dotnet-reverse

github.com

.NET / C# 二进制逆向。当目标是 .NET assembly(PE 头含 CLR、.exe/.dll 托管程序)、C# 编译产物(含 NativeAOT)、红队 Sharp* 工具(Rubeus / SharpHound / SharpHound 等)、.NET 混淆程序(ConfuserEx / SmartAssembly / Babel / Eazfuscator)、.NET loader / info-stealer / 套壳 malware 时使用。优先用 dnSpyEx + de4dot,需要 AI 直接操作时联动 dnSpy MCP。不用于纯 native 二进制(走 reverse-engineering / ida-reverse)。

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

binary-diff

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る

firmware-pentest

github.com

|

$ npx skills add zhaoxuya520/reverse-skill
スキルを見る