Back to Skills

ctf-reverse

Provides reverse engineering techniques for CTF challenges. Use when the main job is to understand how a compiled, obfuscated, packed, or virtualized target works before exploiting or solving it, including binaries, APKs, WASM, firmware, custom VMs, bytecode, game clients, malware-like loaders, and anti-debug or anti-analysis logic. Do not use it when the vulnerability is already understood and the remaining task is exploitation; use pwn instead. Do not use it for pure web workflows, log or disk

1,912stars245forksUpdated 5/9/2026

Security Assessment

Critical Risk(0/100)

Detected risks:

Remote Code Execution([tools-advanced-2.md] eval(, [tools-dynamic.md] eval()
Secret Exposure([languages-platforms.md] private_key, [languages-platforms.md] secret =, [patterns-ctf-3.md] password =)
Command Injection([languages-platforms.md] subprocess.run, [languages-platforms.md] child_process, [patterns-ctf.md] subprocess.run)
Privilege Escalation([patterns-ctf-3.md] sudo, [patterns-ctf.md] setuid, [platforms.md] sudo)
Security Score0/100

About ctf-reverse

The ctf-reverse skill is designed to assist users in reverse engineering tasks, particularly within the context of Capture The Flag (CTF) challenges. It focuses on analyzing and understanding compiled, obfuscated, packed, or virtualized targets before exploitation or problem solving. This includes binaries, APKs, WASM modules, firmware, custom virtual machines, bytecode, game clients, and malware-like loaders, as well as handling anti-debug or anti-analysis techniques. By providing structured guidance and tooling references, it helps users uncover program logic, data flow, and security mechanisms, enabling a deeper understanding of complex software targets that cannot be solved by exploitation alone.

FAQ

Which platforms are supported for the ctf-reverse skill?

The skill is compatible with systems that can run a filesystem-based agent such as Claude Code or similar, and require bash, Python 3, and internet access for installing necessary tools. Both Linux and macOS are supported, with specific package installations provided for each.

What tools and packages are needed to use this skill effectively?

Core Python packages include frida-tools, angr, qiling, uncompyle6, capstone, lief, and z3-solver. System packages vary by platform, such as gdb, radare2, binutils, strace, ltrace, apktool, and upx. Optional plugins and manual installations like pwndbg and r2ghidra extend functionality for debugging and decompilation.

Can this skill be used for pure web or cryptography challenges?

No, ctf-reverse is intended for reverse engineering tasks. It should not be used for pure web workflows, log or disk forensics, or standalone cryptography problems unless reversing the implementation is the primary obstacle.

Is this skill user-invocable?

No, according to the metadata, the skill is not directly invocable by users.

What are the limitations when using ctf-reverse?

The skill does not handle exploitation directly and should not be used once a vulnerability is already understood. It focuses solely on analysis and understanding of program behavior prior to exploitation.

All Files

19 files
SKILL.md12.7 KB
View
anti-analysis-ctf.md10.7 KB
View
anti-analysis.md23.2 KB
View
field-notes.md31.9 KB
View
languages-compiled.md26.5 KB
View
languages-platforms.md28.3 KB
View
languages.md22.9 KB
View
patterns-ctf-2.md18.8 KB
View
patterns-ctf-3.md37.9 KB
View
patterns-ctf.md30.0 KB
View
patterns-runtime.md12.0 KB
View
patterns.md19.9 KB
View
platforms-hardware.md15.8 KB
View
platforms.md22.3 KB
View
tools-advanced-2.md14.5 KB
View
tools-advanced.md12.0 KB
View
tools-dynamic.md23.6 KB
View
tools-emulation.md12.7 KB
View
tools.md15.5 KB
View

Install ctf-reverse

Download and extract the skill files to your .claude/skills/ directory.

Quick Setup:

  1. Copy the skill folder to .claude/skills/
  2. Claude will automatically detect and use the skill