{"enrichment":{"faq":[{"a":"Binary-triage performs an initial survey of unknown programs to rapidly assess what they do and surface red flags. It systematically examines memory layout, extracts and analyzes strings, catalogs imports and functions, then cross-references findings to prioritize deeper investigation. Use binary-triage when you need a fast overview before diving into detailed reverse engineering.","q":"What is binary-triage and what does it do?"},{"a":"Binary-triage streamlines the initial phase of binary analysis by automating the survey of executable structure. It extracts suspicious strings, catalogs imports and functions, and analyzes memory layout to identify packed or encrypted code. This lets you understand what an unknown binary does and spot red flags without manual inspection, creating an actionable task list for deeper investigation.","q":"How does binary-triage help analyze executable files quickly?"},{"a":"Yes, binary-triage is designed to examine both PE (Windows) and ELF (Linux) executable formats. It surveys the binary structure of these formats, analyzes their memory layout and sections, and extracts key metadata like imports, functions, and embedded strings to help you quickly understand program behavior across different platforms.","q":"Can binary-triage examine PE and ELF executables?"},{"a":"Binary-triage identifies suspicious imports, strings, and behaviors by systematically cataloging all imports and functions, then cross-referencing them against known red flags. It surfaces anomalies in memory layout that suggest packed or encrypted code, helping you spot malicious indicators early and prioritize which areas need deeper reverse engineering attention.","q":"How does binary-triage detect suspicious behavior in binaries?"},{"a":"Binary-triage serves as your starting point in the reverse engineering workflow. First, run it on an unknown executable to get a rapid overview of structure, imports, strings, and potential red flags. This initial triage creates a prioritized task list for further investigation, letting you decide whether to proceed with deeper analysis and where to focus your efforts.","q":"What is the typical reverse engineering workflow using binary-triage?"},{"a":"Yes, binary-triage is well-suited for malware triage workflows. It quickly identifies suspicious imports, strings, and behaviors that indicate malicious code, helping you assess whether a program is a threat before committing to detailed reverse engineering. Its systematic approach to surveying executable structure makes it an efficient starting point for security analysis.","q":"Is binary-triage suitable for malware analysis?"}],"shadow_tags":["malware-analysis","static-analysis","reverse-engineering","executable-inspection","threat-assessment","binary-forensics","code-survey","security-triage"],"summary_rewrite":"Binary Triage performs an initial survey of unknown programs to rapidly assess what they do and surface red flags. It systematically examines memory layout, extracts and analyzes strings, catalogs imports and functions, then cross-references findings to prioritize deeper investigation. Use this when you need a fast overview before diving into detailed reverse engineering."},"files":[{"bytes":7297,"path":"ReVa/skills/binary-triage/SKILL.md","sha256":"1a79f775c1d114ba2cad0da4f9bc7d2875a424cd7f368b89ee61063e2faf50ad","url":"https://skillfed.io/files/cyberkaida/reverse-engineering-assistant/binary-triage/63905626/SKILL.md"}],"id":"cyberkaida/reverse-engineering-assistant/binary-triage","links":{"html":"https://skillfed.io/cyberkaida/reverse-engineering-assistant/binary-triage","md":"https://skillfed.io/cyberkaida/reverse-engineering-assistant/binary-triage.md","repo":"https://github.com/cyberkaida/reverse-engineering-assistant"},"meta":{"agents_supported":[],"first_seen":"2026-07-28","forks":68,"language":"Java","last_updated":"2026-07-21","license":"Apache-2.0","name":"binary-triage","publisher":"cyberkaida","stars":792},"relations":{"similar":[{"id":"cyberkaida/reverse-engineering-assistant/deep-analysis"},{"id":"cyberkaida/reverse-engineering-assistant/ctf-rev"},{"id":"cyberkaida/reverse-engineering-assistant/ctf-crypto"},{"id":"cyberkaida/reverse-engineering-assistant/ctf-pwn"},{"id":"cyberkaida/reverse-engineering-assistant/pyghidra-scripting"},{"id":"mohitmishra786/low-level-dev-skills/reverse-engineering"},{"id":"hypnguyen1209/offensive-claude/reverse-engineering"},{"id":"Aradotso/security-skills/awesome-ai-security-tools-guide"},{"id":"ljagiello/ctf-skills/ctf-malware"},{"id":"connorads/dotfiles/reverse-engineering"}]},"slug":{"owner":"cyberkaida","repo":"reverse-engineering-assistant","skill":"binary-triage"},"version":"63905626"}
