用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
直接命令不会经过审查 Prompt;运行前请先检查来源。
npx skills add https://github.com/Netw0rkNoob/VulnClaw --skill ctf-misc命令会保持在同一行。复制前请横向滚动并检查完整内容。
想先保存到本地?可下载 SkillsMP 当前能够提供的文件。
正在显示 SKILL.md
| name | ctf-misc |
| description | CTF杂项知识库 — Python Jail逃逸、Bash Jail逃逸、编码链识别与解码、QR/音频/图像隐写、游戏VM逆向、CTFd API导航、Linux提权 |
针对 CTF Misc 题目的实战知识库,覆盖沙箱逃逸、编码链识别、隐写术、游戏逆向等杂项题型。
| 场景 | 参考文档 | 核心内容 |
|---|---|---|
| Python 沙箱逃逸 | python-jail-escape.md | __import__/func_globals/eval链 |
| Bash 沙箱逃逸 | bash-jail-escape.md | HISTFILE/ctypes.sh/vi编辑器逃逸 |
| 编码链识别与解码 | encoding-chain-reference.md | Base64→Hex→ROT13 多层嵌套 |
| 游戏/自定义 VM 逆向 | game-and-vm-reverse.md | WASM/Brainfuck/Z3 约束求解 |
| CTFd 平台操作 | ctfd-platform-guide.md | API 下载附件/提交 flag |
| Linux 提权 | linux-privesc-quick.md | SUID/sudo/cron/内核漏洞 |
| 题目特征 | 可能考点 | 推荐参考 |
|---|---|---|
| Python exec/eval 输入框 | PyJail 逃逸 | python-jail-escape.md |
| 命令行 restricted bash | BashJail 逃逸 | bash-jail-escape.md |
| 奇怪编码字符串 | 编码链解码 | encoding-chain-reference.md |
| 二维码/音频文件 | 隐写术 | encoding-chain-reference.md |
| 游戏二进制/WASM | 自定义 VM 逆向 | game-and-vm-reverse.md |
| CTFtime / CTFd 平台 | 平台 API | ctfd-platform-guide.md |
| 给了一个 shell | Linux 提权 | linux-privesc-quick.md |
OSINT 开源情报收集知识库 — 四维信息收集模型(服务器→网站→域名→人员),维度四(人员信息)条件触发
Domain routing and boundary guidance for authorized Active Directory red-team security testing, including Kerberos attacks, domain privilege escalation, lateral movement, and GPO abuse. Use when a task belongs to the AD testing domain and needs scope, evidence, pivot, or exit criteria.
Domain routing and boundary guidance for authorized API security testing, including BOLA/IDOR, authentication bypass, mass assignment, missing rate limits, and GraphQL issues. Use when a task belongs to the API testing domain and needs scope, evidence, pivot, or exit criteria.
基于 SOC 职业分类