Analyzing Golang Malware With Ghidra

mukul975/analyzing-golang-malware-with-ghidra · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Reverse engineer Go-compiled malware using Ghidra with specialized scripts for function recovery, string extraction, and type reconstruction in stripped Go binaries.

SKILL.md

Files

This skill is a package of 8 files. Install with the command above, or download the folder.

Related

  1. Reverse Engineering · zhaoxuya520 bundle
    Provides structured reverse engineering techniques for analyzing compiled, obfuscated, packed, or virtualized targets including binaries, APKs, WASM, firmware, and custom VMs using static and dynamic analysis workflows.
    12.8k
    repo stars
  2. Reverse Engineering Malware With Ghidra · mukul975 bundle
    Reverse engineer malware binaries using NSA's Ghidra disassembler and decompiler to understand internal logic, cryptographic routines, C2 protocols, and evasion techniques at the assembly and pseudo-C level.
    24.6k
    repo stars
  3. Go Rust Reverse · zhaoxuya520 bundle
    Reverse engineers stripped Go and Rust binaries by recovering runtime metadata, symbols, panic strings, and idiomatic decompilation patterns.
    12.8k
    repo stars
  4. Ida Reverse · zhaoxuya520 bundle
    Provides a complete workflow for IDA Pro reverse engineering of binaries (PE, ELF, APK, DLL, SO, firmware) using bundled PowerShell scripts to manage the MCP server and open files, then leverages 72 MCP tools for survey, decompilation, cross-references, data-flow tracing, patching, and reporting.
    12.8k
    repo stars
  5. Ghidra Reverse · zhaoxuya520 bundle
    Performs free, open-source reverse engineering with Ghidra using headless or GUI modes, including decompilation, cross-references, and optional MCP workflows when IDA is unavailable.
    12.8k
    repo stars
  6. Wpegpt Analyzer · wpeace-hch bundle
    Automates reverse engineering of PE and ELF binaries by driving IDA with the WPeGPT plugin, producing structured reports on program purpose, network IoCs, suspicious functions, and vulnerability assessment.
    93
    repo stars

Frequently asked questions

How do I install the Analyzing Golang Malware With Ghidra skill?

Run npx skillmds add mukul975/analyzing-golang-malware-with-ghidra in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the Analyzing Golang Malware With Ghidra skill do?

Reverse engineer Go-compiled malware using Ghidra with specialized scripts for function recovery, string extraction, and type reconstruction in stripped Go binaries. It is listed under Security, Coding & Dev Tools on SkillMD.

Is Analyzing Golang Malware With Ghidra safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts, makes network calls, reads secrets. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with Analyzing Golang Malware With Ghidra?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is Analyzing Golang Malware With Ghidra free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published Analyzing Golang Malware With Ghidra?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.