CTF Skills 🧩 Skill Open source
Agent Skills for solving CTF challenges across web, pwn, crypto, reverse, forensics and OSINT
- GitHub stars
- 3.4k
- Stars this week
- +32
- Forks
- 393
- Licence
- MIT
- Last push
- 2026-09-13
- Maintainer
- ljagiello
npx skills add ljagiello/ctf-skillsThird-party agent skills run with your permissions. Read the source before installing, and prefer pinned versions.
Works with
Built on the open Agent Skills standard, so it works in every app that supports Agent Skills.
About CTF Skills
What it does
CTF Skills is a set of Agent Skills for solving capture-the-flag challenges. It groups techniques by category and loads the relevant one automatically from what you describe, so an agent can work through web exploitation, binary pwn, cryptography, reverse engineering, forensics, OSINT, malware analysis and miscellaneous puzzle categories. Each category skill carries concrete techniques, runnable template scripts and payload generators drawn from real challenge patterns. An orchestrator skill analyzes a challenge and delegates to the right category, and a writeup skill produces a standardized solution report afterward.
What is inside
- Category skills: ctf-web, ctf-pwn, ctf-crypto, ctf-reverse, ctf-forensics, ctf-osint, ctf-malware, ctf-misc and ctf-ai-ml
- Runnable templates: pwntools scripts for common exploit patterns, fuzzing helpers, and payload generators
- An installer that sets up the tool groups (Python, apt, brew, gems, Go and manual tools) with dry-run and verify modes
- An orchestrator (
solve-challenge) that routes a challenge to the right category - A writeup generator that outputs metadata, solution steps, code and lessons learned
Works with
Any tool that supports the Agent Skills specification, including Claude Code, Codex, Gemini CLI and OpenCode.
How to install
npx skills add ljagiello/ctf-skills
Optionally pre-install the tools with bash scripts/install_ctf_tools.sh all.
Maintenance and safety
The skills are MIT-licensed and actively maintained. They are meant for CTF competitions and practice targets, which the README names, rather than live systems you do not control. The installer pulls a large set of security tools and shallow-clones an external payload repository, so review it before running, and prefer the dry-run first. The techniques are educational and legitimate in a CTF context.
Who should use it
It suits CTF players and people learning security who want an agent that can recognize a challenge type and reach for the right technique quickly. Outside a CTF or authorized lab it has little use.
Pros
- Broad category coverage with an orchestrator and writeup skill
- Ships runnable exploit templates and payload generators
- Installer with dry-run and verify modes
Cons
- Installs a large security toolchain and clones an external payload repo
- Useful mainly inside CTFs or authorized labs
Similar agent skills
All security skills →SkillSpector 🧩 SkillOpen source
NVIDIA's scanner for Agent Skills: finds prompt injection, exfiltration and supply-chain risks
Trail of Bits Skills 🧩 SkillFree
Security auditing skills from the Trail of Bits research team
claude-bughunter 🧩 SkillOpen source
Skill bundle for authorized bug hunting and external red-team work, with scope gates and reporting
Anthropic Agent Skills 🧩 SkillFree
Anthropic's official collection of Agent Skills, including document, design and developer skills
Superpowers 🧩 SkillFree
A skills library that makes coding agents plan, test-first and debug systematically
Frontend Design skill 🧩 SkillFree
Guides the agent to build distinctive, production-grade UIs instead of generic "AI-looking" designs