Files
reverse-skill/examples/ctf-demo
yhc e554f2e7e9 ci: add strict case-contract test for examples/ctf-demo (P1-3)
- Refactor examples/ctf-demo to satisfy the review_case.py contract:
  split evidence/E-001-E-003.md into per-record E-001/E-002/E-003.md
  with ### E-xxx headings and severity/status/repro_command fields
- Add evidence/checksec-output.txt artifact with matching content_hash so
  --verify-hashes has a real object to verify
- Convert report.md finding/path sections to structured F-01/P-01 blocks
- New case-contract CI job runs review_case.py --verify-hashes --strict on
  examples/ctf-demo; local result: PASS (0 errors, 0 warnings)
2026-08-10 19:52:56 +08:00
..
2026-08-08 18:32:33 +08:00
2026-08-08 18:32:33 +08:00
2026-08-08 18:32:33 +08:00
2026-08-08 18:32:33 +08:00

examples/ctf-demo — 完整流程示例

本目录演示 reverse-skill 的标准作业流:路由 → 授权门禁 → 时间线 → 证据链 → 报告。 内容为虚构示例(CTF 靶场),仅用于展示工作方式。

流程演示

1. 用户任务:"分析这个 CTF pwn 题,栈溢出 gets"
2. 路由:master-route.ps1 -Hint "CTF pwn 栈溢出" → PRIMARY R17 (pwn-chain)
3. 授权:case-init.ps1 -Hint ... -CaseName ctf-demo -AuthGranted → scope.md
4. 执行:时间线追加 + 证据 E-001/E-002 + workitems 更新
5. 产出:报告(docs-generator)+ field-journal 脱敏沉淀

文件

文件 说明
scope.md 案例范围(auth granted / 目标 / network_profile)
timeline.md 追加式时间线
workitems.md 工作项与覆盖率
evidence/ 证据记录示例(E-001 复现命令、E-002 崩溃输出)
report/ 最终报告结构示例

真实使用

# 初始化真实 case(授权目标)
powershell -NoProfile -ExecutionPolicy Bypass -File skills/scripts/case-init.ps1 `
  -Hint "你的任务" -CaseName my-case -AuthGranted -TargetUrl "https://target/" `
  -NetworkProfile authorized_target_only

# 追加证据
powershell -File skills/scripts/append-evidence.ps1 -CaseRoot work\my-case `
  -Id E-001 -Title "..." -ReproCommand "..."

注意:真实 case 应放在 work/<case>/(gitignored,防泄密);本示例目录保留在 git 中供参考。