Skip to content
Security
Skill

/thick-client

Use for authorized security testing of desktop thick clients including local storage, update channels, IPC, traffic, and client-side trust boundaries.

BOOST
From plugin
reverse-skill
39k46 skills
Install
$ npx -y skills add zhaoxuya520/reverse-skill --skill thick-client --agent claude-code

How it fires

How this skill gets triggered: by you, by Claude, or both.

  • Fires itselfAuto-invocation. Claude auto-loads it when your prompt matches the work.Auto-invocation is when the right skill fires by itself at the right moment, driven by a FLOW.md router and a hook, instead of you invoking it by name. It is the difference between a skill being installed and a skill actually getting used.Read the full definition →
  • You can call itInvoke it directly when you want it.
  • Slash command/thick-client

Context preview

The summary Claude sees to decide when to auto-load this skill.

Use for authorized security testing of desktop thick clients including local storage, update channels, IPC, traffic, and client-side trust boundaries.

SKILL.md

thick-client.SKILL.md
name: thick-client
description: Use for authorized security testing of desktop thick clients including local storage, update channels, IPC, traffic, and client-side trust boundaries.

Thick Client Security Testing

ACTION REQUIRED(读完后立刻执行)

1. `NOW`: 读取 `../field-journal/precedent-pentest.md` 2. `NOW`: 确认目标是 **桌面厚客户端**(Win/macOS/Linux GUI 或服务伴生),非纯 Web 3. `NOW`: case-init;安装包来源与测试账号写入 scope 4. `NEXT`: 工具(Burp 上游代理、进程监控、逆向工具) 5. `ACT`: 信任边界图 → 本地面 → 网络面 → 更新/供应链

适用场景

  • C/S 架构客户端、Electron/Qt/.NET WinForms/WPF
  • 本地配置/凭证存储、IPC、命名管道
  • 客户端强制校验绕过研究(授权)
  • 自动更新通道与代码签名验证

工作流

1. 建边界

□ 进程树、子进程、驱动/服务
□ 监听端口与出站域名
□ 本地敏感路径:%APPDATA%、Keychain、注册表

2. 本地攻击面

□ 明文配置、硬编码密钥、调试开关
□ DLL 劫持/搜索顺序(Windows)
□ 数据库文件(SQLite)权限与加密
□ IPC:谁可连接?是否鉴权?

3. 网络面

□ 系统代理 / 应用自定义 TLS
□ 证书钉扎 → 联合 mobile/js 方法学或 Frida
□ API 越权:客户端隐藏的管理接口

4. 逆向验证

□ .NET → dotnet-reverse;原生 → ida/ghidra;Electron → asar + js-reverse

工具链

| 工具 | 用途 | |------|------| | Process Monitor / API Monitor | 行为 | | Burp / mitmproxy | 流量 | | dnSpy / IDA / Ghidra | 逆向 | | Sysinternals | Windows 面 | | asar / nexe 检测 | Electron |

参考

  • `references/thick-client-checklist.md`
  • `../dotnet-reverse/` `../ida-reverse/` `../js-reverse/` `../api-security/`

路由上下文

**上游**: MASTER R32 **下游**: 纯协议 `protocol-reverse`;供应链更新 `supply-chain-security`

任务完成自检

  • [ ] 是否画出信任边界?
  • [ ] 本地+网络面是否都覆盖?
  • [ ] Checklist?
Read more
Ships withreverse-skill

Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding clients 逆向/渗透/安全技能路由包 - AI 自动路由 + 按需自举工具链 + 自动进化经验库 | 支持 Claude Code / Kiro / Cursor / Cline 等代码 AI 客户端

Get the whole plugin
Stats
39,460
Stars
5,492
Forks
Active
Maintenance
PowerShell
Language
MIT
License
11d ago
Last commit
4mo ago
Created
3h ago
Added

Repo: zhaoxuya520/reverse-skill

Other skills on reverse-skill.

binary-diff
Skill

binary-diff

跨版本符号迁移与二进制差分。当你有旧版本的符号/逆向结果,需要快速迁移到新版本时使用。 适用场景:内核缺 PDB 用旧版符号推导、程序更新后批量迁移函数名、应用更新后快速定位新偏移。…