pwn
Binary exploitation, mitigation checking, GDB debugging, and ROP construction.
Install / Use
npx skills add Dellrall/SunCTF26Installs into whichever agent you are using.
Claude Commands
Claude Code slash commands
Quality Score
Category
SecuritySupported Platforms
Tags
Our assessment of pwn
pwn scores 59/100 on our quality scale, 1087th of 1,116 Security skills we index.
Its Claude Commands is 703 bytes long, lightly structured (1 heading) and no code examples: fairly brief, so expect to fill in details yourself.
It has no GitHub stars yet, so there is no community track record; judge it on its content.
Maintenance, license and trust
- We could not determine when the repository was last updated.
- No license is declared. By default that means all rights are reserved: you can read it, but reusing or redistributing it is not clearly permitted. Ask the author before building on it commercially.
- Its trust signals score 68/100, with 3 cautions from licensing, adoption, age or documentation. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.
pwn compared with similar skills
All 4 of these similar skills score higher than pwn; compare them before choosing.
| Skill | Score | Stars | Updated | Format |
|---|---|---|---|---|
| pwn (this skill)by Dellrall | 59 | 0 | — | Claude Commands |
| claude-memby thedotmack | 100 | 96.6k | today | CLAUDE.md |
| Agent-Reachby Panniantong | 100 | 91.8k | 20d ago | CLAUDE.md |
| Understand-Anythingby Egonex-AI | 100 | 85.4k | 4d ago | CLAUDE.md |
| headroomby headroomlabs-ai | 100 | 74.5k | today | CLAUDE.md |
Frequently asked questions
- How do I install pwn?
- Run
npx skills add Dellrall/SunCTF26. The install tabs above show the steps for each supported agent. - Which AI agents does pwn work with?
- It is written for Claude Code, as a Claude Commands file. Other agents that read the same format can often use it too.
- Is pwn safe to use?
- It declares no license and scores 68/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
- Is pwn still maintained?
- We could not determine when the repository was last updated.
Skill content
View source on GitHubdescription: Binary exploitation, mitigation checking, GDB debugging, and ROP construction.
Analyze a binary exploitation (PWN) challenge.
Diagnostic Checklist
- Mitigation Triage:
checksec --file=./vuln- NX: Need ROP / ret2libc.
- Canary: Leak canary or format string overwrite.
- PIE: Leak code base ($Address - Offset$).
- Crash & Offset:
- In GDB/pwndbg:
cyclic 200->r-> crash ->cyclic -l <crash_eip>.
- In GDB/pwndbg:
- Exploit Skeletons:
- ret2libc (x86_64):
pop rdi; ret-> leakputs(puts@got)-> callmain-> calculatelibc_base->system("/bin/sh"). - Format String:
fmtstr_payload(offset, {elf.got['puts']: elf.sym['win']}).
- ret2libc (x86_64):
Related Skills
claude-mem
96.6kPersistent Context Across Sessions for Every Agent – Captures everything your agent does during sessions, compresses it with AI, and injects relevant context back into future sessions. Works with Claude Code, OpenClaw, Codex, Gemini, Hermes, Copilot, OpenCode + More
Agent-Reach
91.8kGive your AI agent eyes to see the entire internet. Read & search Twitter, Reddit, YouTube, GitHub, Bilibili, XiaoHongShu — one CLI, zero API fees.
Understand-Anything
85.4kGraphs that teach > graphs that impress. Turn any code into an interactive knowledge graph you can explore, search, and ask questions about. Works with Claude Code, Codex, Cursor, Copilot, Gemini CLI, and more.
headroom
74.5kCompress tool outputs, logs, files, and RAG chunks before they reach the LLM. 20% fewer tokens for coding agents, 60-95% fewer tokens for JSON, same answers. Library, proxy, MCP server.
Trust signals
From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.
