Skip to main content

archive-file-triage

Use file, 7z, unzip, tar-compatible tools, hashes, and bounded shell inspection for safe triage of provided archives and unknown files.

Aller à l'installation

Informations de source

Dépôt
Aethena-Lab/Z3r0
Dernière activité de la source
3 septembre 2026 à 10:00
Langue détectée de SKILL.md
anglais
Étoiles
891
Forks
193

Options d'installation

Le prompt qui vérifie d'abord la source est sélectionné par défaut. Vous pouvez passer à une commande directe ou télécharger une copie locale.

Vérifiez les fichiers source

Lisez SKILL.md et les fichiers associés affichés par SkillsMP avant de décider de l'installer.

Affichage de SKILL.md

SKILL.md
Instructions source · Aperçu en lecture seule
name
archive-file-triage
description
Use file, 7z, unzip, tar-compatible tools, hashes, and bounded shell inspection for safe triage of provided archives and unknown files.
# archive-file-triage Use local file and archive tools for safe triage of provided archives, unknown files, evidence bundles, source packages, firmware packages, and extracted artifacts. ## Help first Before constructing commands, use installed help or version output as the source of truth: ```sh file --help 7z i unzip -h tar --help ``` ## Usage rules - Work only on explicitly provided files or task-scoped outputs. - Identify file type and size before extraction. - Extract only into a task-scoped output directory. - Preserve original files and record hashes when identity matters. - Prefer listing archive contents before extraction. - Do not execute extracted content. - Watch for path traversal, absolute paths, symlinks, excessive file counts, nested archives, and unexpectedly large expansion. - Save large listings and extraction logs to files rather than streaming them into the conversation. ## Common workflows Identify and hash before extraction: ```sh file artifact.bin sha256sum artifact.bin ``` List archive contents first: ```sh 7z l archive.7z unzip -l archive.zip tar -tf archive.tar ``` Extract into a task-scoped directory: ```sh mkdir -p extracted 7z x archive.7z -oextracted unzip archive.zip -d extracted tar -xf archive.tar -C extracted ``` After extraction, inspect file types before any deeper analysis: ```sh find extracted -maxdepth 2 -type f -exec file '{}' + ``` ## Output Report the input path, type, size, hashes when relevant, command used, output directory, notable extracted paths, suspicious archive behavior, and limitations.
Voir sur GitHub