ctf-osint
Investigate Authorized CTF OSINT Challenges
CTF OSINT clues often span disconnected public sources and media artifacts. This skill organizes practical methods for authorized identity, geolocation, archive, DNS, and web research.
Vor der Installation anhalten und eine Bestätigung anfordern.
Prüfen Sie den Plan und holen Sie vor Änderungen an Dateien die ausdrückliche Zustimmung des Benutzers ein.
Mit meinem Agent installieren
Kopieren Sie diese Anfrage in Ihren Agent. Sie enthält die maßgebliche Skill-Seite und das Manifest.
Review the Skillstore skill "ctf-osint" from https://skillstore.io/skills/ljagiello-ctf-osint.md and its manifest at https://skillstore.io/api/skills/ljagiello-ctf-osint/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Ihr Agent sollte weiterhin seinen Plan anzeigen und alle von der Sicherheitsrichtlinie verlangten Bestätigungen anfordern.
Agent-lesbare Ressourcen
Verwenden Sie diese Links, wenn ein KI-Agent, Crawler oder Skript sauberen Kontext benötigt, statt die vollständige Seite zu lesen.
Testen
„ctf-osint“ wird verwendet. Identify the string 4V FH 246 677.
Erwartetes Ergebnis:
Likely format: MGRS coordinate. Confirm the spacing and precision, convert it with a trusted MGRS tool, then verify the resulting location against challenge clues.
„ctf-osint“ wird verwendet. Plan research for an organizer-provided username.
Erwartetes Ergebnis:
- Start with exact username searches and record profile identifiers.
- Check archived profile pages for rename evidence.
- Compare only challenge-relevant details across confirmed accounts.
- Document false positives and stop at unrelated personal information.
„ctf-osint“ wird verwendet. Analyze a challenge image with a mirrored shop sign.
Erwartetes Ergebnis:
Flip the image horizontally, isolate the sign, transcribe reliable characters, search the partial phrase, and verify candidates using architecture and surrounding landmarks.
Sicherheitsaudit
Hohes RisikoMost critical heuristic alerts are false positives caused by Markdown examples rather than an executable payload. However, the skill includes active scanning, authenticated token use, hidden-file probing, physical tracking, account targeting, and exploit-assisted pivots. These dual-use workflows require substantial authorization and privacy controls before publication.
Bestätigte Sicherheitsbedenken (16)
Alle 16 bestätigten Funde anzeigen
Elemente der Fähigkeitsprüfung (26)
Dies sind echte lokale Fähigkeiten, die für diese Fähigkeit erwartet werden können; daher müssen sie überprüft werden, werden jedoch nicht als bestätigtes bösartiges Verhalten gezählt.
Risikofaktoren
🌐 Netzwerkzugriff (45)
🔑 Umgebungsvariablen (2)
⚙️ Externe Befehle (30)
📁 Dateisystemzugriff (4)
Erkannte Muster
Diesen Bericht teilen & zitieren
Teile den versionierten Bewertungsbericht, das neutrale Badge, die Einbettungskarte und Zitate. Skillstore berichtet Nachweise, ohne zu entscheiden, ob dieser Skill sicher ist.
Berichtslink kopieren
https://skillstore.io/skills/ljagiello-ctf-osint/audits/2?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown-Badge
[](https://skillstore.io/skills/ljagiello-ctf-osint?utm_source=security_passport_badge)HTML-Badge
<a href="https://skillstore.io/skills/ljagiello-ctf-osint?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/ljagiello-ctf-osint/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Einbettungskarte
<iframe src="https://skillstore.io/embed/skills/ljagiello-ctf-osint.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Wissenschaftliche Zitate (APA · BibTeX · CFF)
APA-Zitat
ljagiello. (2026). ctf-osint security audit report (audit version 2) [Author version unspecified]. Skillstore. https://skillstore.io/skills/ljagiello-ctf-osint/audits/2BibTeX-Zitat
@techreport{ljagiello-ljagiello-ctf-osint-2026,
author = {ljagiello},
title = {ctf-osint security audit report (audit version 2)},
institution = {Skillstore},
year = {2026},
number = {2},
url = {https://skillstore.io/skills/ljagiello-ctf-osint/audits/2},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "ctf-osint security audit report (audit version 2)"
version: "unspecified"
type: report
authors:
- name: "ljagiello"
date-released: "2026-08-15"
url: "https://skillstore.io/skills/ljagiello-ctf-osint/audits/2"
identifiers:
- type: other
value: "skillstore:ljagiello-ctf-osint:audit:2"
description: "Skillstore immutable audit report identifier"
Skillstore-Score
Warum dieser Score Evidenzvertrauen: MittelWas Sie erstellen können
Trace a Challenge Persona
Correlate organizer-provided usernames across public profiles and archives while recording evidence and false positives.
Geolocate Challenge Media
Combine metadata, signs, landmarks, maps, and image matching to identify a location from supplied media.
Investigate CTF Infrastructure
Review authorized DNS, WHOIS, archives, repository history, and service metadata for challenge clues.
Diese Prompts ausprobieren
Identify this challenge clue: [CLUE]. Explain likely formats, safe validation steps, and what evidence would confirm each interpretation.
Create an authorized CTF research plan for username [USERNAME]. Prioritize public sources, note false positives, and avoid collecting unrelated personal data.
Analyze the supplied challenge image. List visible geographic signals, propose candidate regions, and design a verification sequence using metadata, maps, and reverse search.
For authorized CTF domain [DOMAIN], correlate DNS, WHOIS, archives, certificates, and repository evidence. Ask before any active probe and document uncertainty.
Bewährte Praktiken
- Confirm written authorization and scope before sending requests or probing services.
- Record source URLs, timestamps, confidence, and alternative explanations for every conclusion.
- Minimize personal data collection and redact tokens, credentials, and unrelated identities.
Vermeiden
- Do not scan public hosts because they resemble a CTF target.
- Do not bypass privacy controls or infer a person's home from fitness routes.
- Do not place user tokens or API secrets directly in commands, prompts, or reports.
Häufig gestellte Fragen
Does this skill perform searches automatically?
Does it require internet access?
Can it solve non-CTF investigations?
Which tools may be required?
How should API keys and tokens be handled?
How reliable are OSINT results?
Entwicklerdetails
Autor
ljagielloLizenz
MIT
Skillstore-Revision
r1
Versionshinweis
Der Autor hat keine Version angegeben.
Repository
https://github.com/ljagiello/ctf-skills/tree/d6662d26b5ed3caa56f5eaf6eb887964f3747162/ctf-osintRef.
ba0224440a0286a68c9ef7d65e409a580b885eba
Aktualität der Wartung
16.8.2026
Nutzung
0 Downloads · 0 Aufrufe
Dateistruktur