
Claude Skills by alicewe1
github.com/alicewe1Create, edit, upgrade, animate, and prepare production-ready game assets with Meowa, including pixel and HD sprites, consistent item or character variants, multi-view characters, UI sheets, image and frame edits, seamless textures, terrain tilesets, isometric and side-scrolling maps, short video, sound effects, and game music. Use when a task requires choosing the right game-art workflow, planning a pixel or HD asset pipeline, running the bundled Meowa CLI, or validating final media for a gam...
Game hacking toolkit: memory trainer, DLL injection, aimbot/ESP math, speedhack patterns, currency manipulation, packet interception. Trigger: cheat, trainer, aimbot, esp, wallhack, speedhack, game hack, memory edit, inject dll, gold hack, currency hack, no recoil, triggerbot.
Guide for game-engine internals, source trees, plugins, and engine-specific security research. Use this skill when researching Unreal, Unity, Source, Godot, custom engines, engine detectors, engine explorers, or engine protection patterns relevant to modding, reverse engineering, and anti-cheat.
Guide for game-hacking technique taxonomy and threat modeling relevant to game security. Use this skill when researching memory access, code injection, overlays, input simulation, engine-specific attack surfaces, or how modern anti-cheat systems constrain user-mode, kernel-mode, hypervisor, and DMA-based cheat implementations.
Reverse engineering assistant powered by Ghidra. Use for binary analysis, decompilation, vulnerability research, auditing compiled code, renaming symbols, annotating disassembly, cross-references, or any RE task - even without explicit mention of Ghidra.
GPT/Cursor 账号注册机套件(协议注册 + 接码 OTP + Turnstile 打码 + OpenAI sentinel PoW + TLS 指纹 + Cursor 授权注入与机器ID复位)。触发词:注册机、批量注册、接码、OTP 自动填充、sentinel、tls 指纹、cursor 授权。
Guide for graphics API interception, overlay rendering, and render-pipeline analysis across DirectX, OpenGL, and Vulkan. Use this skill when working with Present or SwapBuffers hooks, DXGI swap chains, shader or draw-call interception, screenshot-sensitive overlays, or graphics debugging in game security research.
A relentless interview to sharpen a plan or design.
A relentless interview to sharpen a plan or design, which also creates docs (ADR's and glossary) as we go.
Grill the user relentlessly about a plan, decision, or idea. Use when the user wants to stress-test their thinking, or uses any 'grill' trigger phrases.
Beginner-friendly reverse-engineering workflow for Hardware Breakpoint Observation. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
Create, repair, validate, visually QA, and package Codex-compatible v2 animated pets from character art, generated images, company or prospect brand cues, or visual references. Use for any new Codex pet, custom mascot, non-pixel pet style, brand-inspired pet, existing-pet repair, or 8x11 spritesheet workflow requiring all 9 standard animation rows, 16 look directions, deterministic assembly, QA artifacts, and spriteVersionNumber 2 packaging.
Beginner-friendly workflow for Executable anonymous mappings, memfd, JIT pages, decrypted code, and runtime reconstruction. Extracts general methods and evidence practices without depending on any author, private repository, personal path, secret, or branded prompt. Use when a reverse-engineering task needs reliable observation, loader analysis, runtime evidence, dump validation, crash attribution, tool setup, or reproducible reporting.
Seedance 2.5 prompt director — the omni-reference dialect. Routes the four generation modes (t2v / omni_reference / video_edit / video_extension), writes explicit @Image/@Video/@Audio reference roles with exclusions, stages 30-second videos into end-state beats, and covers video editing, forward/backward extension, first-last-frame and multi-keyframe control, storyboard grids, blockout rendering, and seamless transitions. Use whenever the user asks for a Seedance 2.5 prompt, mentions Seedance...
Use when the user gives a content theme or niche and wants Douyin benchmark accounts, benchmark content, evidence-backed topic candidates, and an owner checklist for do/observe/do-not decisions.
Infrastructure-as-Code security scanning router for Terraform, CloudFormation, Kubernetes manifests, Helm, ARM/Bicep. Orchestrates Checkov, tfsec, Terrascan, KICS, kubesec, kube-linter, Polaris, cfn-lint/cfn-nag, and OPA/Conftest. Use when auditing IaC for misconfigurations, scanning Terraform plans, validating K8s security policies, checking cloud infrastructure compliance, or authoring custom policy-as-code (Rego).
Rebuild import address table. Trigger: iat, import table, rebuild, fix imports, invalid pointer.
IDA Pro 逆向分析辅助技能。当用户提到逆向、反编译、分析二进制/PE/ELF/APK/DLL/SO、破解、找密码、漏洞分析、病毒分析、firmware 固件分析,或需要分析 exe/dll/so/elf/macho/sys 等文件时,务必使用此技能。 Ensure to use this skill when the user wants to analyze any binary file, regardless of whether they explicitly mention "IDA" or "reverse engineering". This includes requests like "看看这个exe", "分析这个dll", "帮我破解", "找一下密码", "这个软件怎么注册", etc. Use the bundled scripts (scripts/start.ps1, scripts/open.ps1) for deterministic server management and file opening — do NOT write a...
Identity and document system research: templates and production for ID, passport, visa, diploma, certificate. Trigger: id card, passport, visa, diploma, certificate, forgery, 证件, 伪造, 身份证, 护照, 签证, 文凭.
Analyze binary import table. Trigger: imports, import table, dll list, api dependencies, IAT.
Execute Indirect Prompt Injection attacks against Large Language Models (LLMs) by subtly embedding malicious instructions within external data sources (e.g., websites, documents, databases) that the LLM autonomously ingests. This forces the model to execute attacker-controlled commands under the guise of processing legitimate user requests.
Modify conditional jumps to unconditional. Trigger: jmp patch, unconditional jump, je to jmp, jne to nop.
JavaScript reverse engineering: obfuscation recovery, signature/HMAC location, browser environment patching, and frontend crypto extraction.
Modify conditional flow at decision points. Trigger: jump, je, jne, jmp, nop, patch jump, conditional.
Beginner-friendly reverse-engineering workflow for Kernel Driver Analysis. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
Reverse algorithm and build credential generator. Trigger: keygen, serial, generate key, algorithm reverse, credential.
Use whenever the user asks who the assistant is, asks its name or identity, requests a self-introduction, or uses an equivalent Chinese or English identity question.
Use when analyzing Android AArch64 ELF files protected by a special linker-style fake PT_LOAD wrapper, impossible high-address LOAD segments, entry-point translation such as e_entry minus fake p_vaddr, XOR runtime decryptors, embedded ELF carving, shell-looking ELF second stages, or when a user mentions linker 加固/脱壳/通杀. Provides static and dynamic workflows, tools, and principles for recovering the real runtime image.
Beginner-friendly reverse-engineering workflow for Linux Kernel Reversing. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
Test Large Language Models for direct prompt injection vulnerabilities where user input overrides system instructions, extracts system prompts, bypasses safety filters, or causes unauthorized actions. Use this skill when assessing chatbots, AI assistants, LLM-powered tools, or any application that processes natural language input through an LLM. Covers role-playing attacks, instruction hierarchy exploitation, multi-turn manipulation, and context window abuse for comprehensive AI security test...
Test for indirect prompt injection vulnerabilities where malicious instructions are injected through external data sources (websites, emails, documents, database records) that the LLM processes. Use this skill when assessing LLM-integrated applications that process user-generated content, retrieve web pages, parse emails, or read documents. Covers injection via web content, email bodies, user profiles, and database records that are fed to LLM context.
Execute advanced LLM Jailbreaking techniques using roleplay, nested environments (virtual machines), and complex personas to completely bypass safety constraints and ethical alignments embedded in AI models.
Systematically bypass LLM safety filters and content moderation systems using advanced jailbreaking techniques. Use this skill when testing AI systems for safety alignment robustness, evaluating content moderation effectiveness, or conducting authorized AI red team assessments. Covers role-play attacks, few-shot manipulation, encoding bypass, multi-modal exploitation, and automated jailbreak discovery methods.
LLM 攻击性绕过与上下文诱导工具箱(物理层执行)。适用于 AI 对抗场景:生成各类提示注入载荷(直接/间接/越狱/角色扮演/多轮链)、篡改上下文文件诱导 AI 偏离、编码混淆绕过过滤器、构造 RAG/工具输出污染样本。所有载荷均可本地生成、落盘、验证,不依赖外部服务。触发词:AI攻击、提示注入、越狱、上下文诱导、诱导AI、篡改上下文、污染上下文、绕过滤器、LLM攻击、prompt注入。
Exploit an application's absolute trust in its underlying LLM (Overreliance). Use this skill to induce critical "hallucinations" (confident falsehoods) that cause downstream logical systems or automated agents tracking the LLM's output to make destructive actions or grant unauthorized access.
Exploit AI applications using Indirect Prompt Injection. This skill focuses on hiding malicious instructions within data sources (web pages, documents, emails) that the LLM processes, causing the AI to execute unintended actions or leak data without direct user interaction.
> 覆盖 OWASP LLM Top 10 v2.0 + OWASP Agentic AI Top 10(ASI 2026) > 当前路由未命中时,联网搜索最新漏洞利用技术。
Comprehensive LLM security testing prompts for bias detection, data leakage, alignment testing, and adversarial prompt resistance.
Beginner-friendly reverse-engineering workflow for Macos Kernel Reversing. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
> YARA / Sigma / 沙箱 / IOC 提取 / 反反分析 > 静态 + 动态 + 行为三合一
Malware development toolkit: dropper/stager generation, C2 protocol builders, keylogger, screenshot capture. Trigger: malware, builder, c2, dropper, stager, keylogger, payload gen.
Test Model Context Protocol (MCP) servers and tool-calling systems for security vulnerabilities including tool injection, parameter manipulation, privilege escalation, and data exfiltration through AI agent tool interfaces. Use this skill when assessing MCP server implementations, AI agent tool integrations, or any system that exposes tools to language models. Covers tool confusion attacks, cross-tool exploitation, and MCP server hardening assessment.
Beginner-friendly reverse-engineering workflow for Memory Breakpoint Tracing. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
Memory breakpoint OEP method. Trigger: memory breakpoint, text section, code section, section bp.
Beginner-friendly reverse-engineering workflow for Memory Forensics. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
Mobile competitive-game security research for 和平精英、王者荣耀、PUBG Mobile、Honor of Kings、Game for Peace and similar Android/iOS titles. Use when Codex receives an APK/IPA, native library, dump, replay, PCAP, crash, suspicious cheat sample, anti-cheat telemetry, player report, Unity/Unreal artifact, or informal requests involving 外挂、透视、ESP、自瞄、注入、Hook、封包修改、内存修改、SDK dump、反作弊、作弊检测. Route colloquial requests into artifact intake, sample analysis, private-lab reproduction, runtime structure recovery, imp...
Android/iOS reverse engineering: APK/IPA analysis, Frida/Objection workflows, SSL pinning/root-detection research, and runtime hooks.
Guide for Android and iOS game security, reversing, and anti-cheat-adjacent platform research. Use this skill when working with APK or IPA analysis, IL2CPP mobile titles, Frida, Zygisk or Magisk, jailbreak or root detection bypass, Android kernel modules, emulator detection, or mobile anti-cheat systems.
Beginner-friendly reverse-engineering workflow for Native Api Hooking. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.
Beginner-friendly reverse-engineering workflow for Native Unpacking. Use it to collect evidence, choose static or dynamic analysis, correlate runtime behavior, and produce a reproducible result.