Compile
apache/skywalking-nodejs
Compile / build / type-check the skywalking-nodejs agent. An agent skill from apache/skywalking-nodejs.
Electron 桌面应用逆向:asar 解包、主/渲染进程 JS、V8 字节码(.jsc)边界、CDP 动态调试、反调试对抗。
$ npx skills add dslsdzc/rev-skills --skill re-electron -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install dslsdzc/rev-skills re-electron --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/re-electron .claude/skills/re-electron && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "re-electron" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electron into .claude/skills/re-electron/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-electron", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electronType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add dslsdzc/rev-skills --skill re-electron -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install dslsdzc/rev-skills re-electron --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/re-electron .agents/skills/re-electron && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "re-electron" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electron into .agents/skills/re-electron/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-electron", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-electron -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install dslsdzc/rev-skills re-electron --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/re-electron .cursor/skills/re-electron && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "re-electron" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electron into .cursor/skills/re-electron/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-electron", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/dslsdzc/rev-skills.git --path .claude/skills/re-electron--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add dslsdzc/rev-skills --skill re-electron -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install dslsdzc/rev-skills re-electron --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/re-electron .gemini/skills/re-electron && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "re-electron" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electron into .gemini/skills/re-electron/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-electron", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install dslsdzc/rev-skills re-electronInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add dslsdzc/rev-skills --skill re-electron -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/re-electron .github/skills/re-electron && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "re-electron" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electron into .github/skills/re-electron/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-electron", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-electron -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install dslsdzc/rev-skills re-electron --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/re-electron .opencode/skills/re-electron && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "re-electron" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-electron into .opencode/skills/re-electron/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-electron", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
re-electronElectron 桌面应用逆向:asar 解包、主/渲染进程 JS、V8 字节码(.jsc)边界、CDP 动态调试、反调试对抗。
Re Electron is an agent skill from dslsdzc/rev-skills. Electron 桌面应用逆向:asar 解包、主/渲染进程 JS、V8 字节码(.jsc)边界、CDP 动态调试、反调试对抗。 触发词:Electron、asar、桌面应用逆向、.jsc、V8 快照、CDP、ELECTRONRUNASNODE、devtools 检测。
Its SKILL.md is about 2.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security. It works with npm, Linux and Node.js. The repository describes itself as: 122 个逆向工程 AI 技能(可发布、跨平台):恶意软件分析 / 软件逆向 / 固件嵌入式 / 协议逆向 / 移动应用 / 脱壳反混淆 / 软件破解 / 漏洞挖掘 / 托管代码 / 取证情报 / CTF。 The licence is Apache-2.0.
7 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit bd21db8. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
npxnpmaptbrewnodechoconvmcurldnfFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use npx, npm and curl, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Re Electron loads about 2.7k tokens when it runs. Until then it costs about 38 tokens; SKILL.md has 858 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from dslsdzc/rev-skills at commit bd21db8, republished under its Apache-2.0 licence (© dslsdzc). 858 words, ~2,739 tokens.
.claude/skills/re-electron/SKILL.md (or your agent's skills folder).resources/app.asar 结构、主/渲染进程 JS 逻辑还原、原生 .node 模块、密钥/通信逻辑提取.jsc 文件(bytenode 类工具编译产物)的识别与边界判断--inspect、渲染进程 --remote-debugging-port(CDP)、ELECTRON_RUN_AS_NODE 以 Node 模式复用运行时.jsc 出现在 Cocos 游戏资源场景(那是 Cocos 引擎字节码,走 [[re-game]];本技能只管 Electron 的 V8 字节码).jsc 均按动态处理,静态解包可免沙箱所有工具先验证再使用。静态解包可免沙箱;运行应用 / 动态调试默认沙箱 + 网络隔离([[re-analyze/platform-tips]] 最高原则)。Electron 应用多为跨平台打包,工具链以 npm 生态为主、跨 OS 一致。
apt install nodejs npm(Debian/Ubuntu 仓库版本偏旧,V8 版本锁场景用 NodeSource 或 nvm 装新版);macOS: brew install node;Windows: 官方安装器或 choco install nodejs;跨平台: nvm(nvm install <version>)按需切换 Node 版本node --version && npm --versionnpm install -g @electron/asar 或免安装 npx @electron/asar ...(npx 首次自动下载;旧包名 asar 已弃用但 CLI 兼容仍可用)npx @electron/asar --help(应列出 pack / list / extract-file / extract 子命令)npx @electron/asar extract app.asar out/(整包解出)、npx @electron/asar list app.asar(列目录)、npx @electron/asar extract-file app.asar path/to/file(单文件){"files":{...}},每文件含 size/offset/integrity),JSON 字符串自偏移 16 起(前 12 字节为 pickle 嵌套大小字段,offset 12 为头字符串长度,均 uint32 LE)——strings app.asar | grep '"files"' 或小脚本 JSON.parse 定位,无需任何工具apt install binutils 等);macOS: 自带(或 brew install binutils);Windows: WSL 内或 Sysinternals stringsstrings --versionnpm install chrome-remote-interface(官方 npm 包,Chrome DevTools Protocol 客户端)node -e "require('chrome-remote-interface')" 不报错即装好;实际连通见操作步骤 6curl http://127.0.0.1:<port>/json/list 拿 webSocketDebuggerUrl 后连 WebSocket 发 JSON-RPC)npm install -g bytenode 或项目内安装npx bytenode --help(-c 编译、-e/--electron 编译为 Electron 用、-ep/--electron-path 指定 Electron 可执行文件).jsc 的魔数与可加载性;本身不是反编译工具(见坑 1)electronMain)无 CLI 对应参数,须用 API 调用形态:require('bytenode').compileFile({ electronMain: true, filename: 'main.js' })(与坑 1 的 electronMain 模式呼应)npm install -g @electron/fuses(官方包)npx @electron/fuses read --app <应用可执行文件或 .app 路径>——输出各 fuse 状态(RunAsNode / EnableNodeCliInspectArguments / EnableEmbeddedAsarIntegrityValidation / OnlyLoadAppFromAsar 等)npx @electron/fuses write --app <路径> RunAsNode=off EnableNodeCliInspectArguments=off(写前先 read 评估;翻转改动二进制、破坏签名,macOS 需重新签名)dL7pKGdnNz796PbbjQWNKmHXBZaB9tsX,其后为 fuse 版本、长度与 wire 字节(0x30(0)=禁用、0x31(1)=启用、0x72(r)=移除)apt install ghidra / pacman -S ghidra;macOS brew install --cask ghidra;Windows 官方 zip;验证 analyzeHeadless -help).node 本质是 ELF/Mach-O/PE 动态库,导入反编译器前先用 file/readelf -h 确认架构(联动 [[re-format-elf]] / [[re-format-macho]] / [[re-format-pe]])apt install xvfb / dnf install xvfb / pacman -S xvfbxvfb-run -a node --version;无显示服务器时 xvfb-run -a electron . 运行目标按顺序执行,每步结果存档;动态执行默认沙箱。
识别 Electron 与版本:
ls resources/ # 打包应用应有 app.asar(+ app.asar.unpacked/)
strings <可执行文件> | grep -i -E 'electron|chrome' | headresources/app.asar 结构、进程列表中多进程(主进程 + GPU/渲染子进程)、二进制内 Electron/Chromium 版本串--version 常无输出——可靠途径是动态阶段用 CDP 执行 process.versions(electron/chrome/v8/node/modules 全字段);静态只能靠二进制 strings 版本串辅助process.versions.v8 获取asar 解包:
npx @electron/asar list app.asar # 先看目录结构
npx @electron/asar extract app.asar out/ # 整包解出
npx @electron/asar extract-file app.asar package.json # 单文件快速取strings app.asar | grep '"files"' 或脚本按 size/offset 拼接即可还原全部文件app.asar.unpacked/ 目录是未打进归档的原生模块,原样在磁盘上,直接分析npx @electron/fuses read --app <可执行文件> 看 EnableEmbeddedAsarIntegrityValidation / OnlyLoadAppFromAsar——完整性校验开启时替换 app.asar 会导致启动失败(见坑 2)主进程入口与逻辑:
out/package.json 的 main 字段 → 主进程入口 JS(默认 main.js)app/BrowserWindow/ipcMain 调用即业务骨架;IPC handler(ipcMain.handle/on)是主/渲染通信枢纽,先列全ELECTRON_RUN_AS_NODE=1 <可执行文件> script.js 以纯 Node 方式复用(同一 V8/Node ABI,见坑 3 的边界)——不依赖 electron API 的部分可离线跑通观察行为.jsc 的场景:ELECTRON_RUN_AS_NODE 下 require('bytenode') 加载 .jsc(版本必须匹配,见坑 1)渲染进程 JS 还原:
out/ 某子目录(webpack/browserify/rollup bundle,常混淆、压缩成一行)<script> 引用的 bundle → 美化(js-beautify 类)→ 字符串定位(strings/xxd)→ 混淆层走 [[re-script-deob]] / [[re-deobfuscate]].jsc 文件出现时跳到坑 1 的边界处理(不可当 JS 文本解析)原生模块 .node:
app.asar.unpacked/**/*.node(以及解包后 require 路径指向的 .node)file xxx.node(ELF/Mach-O/PE + 架构)、readelf -h(Linux);.node 即动态库,走 [[re-format-elf]] / [[re-format-macho]] / [[re-format-pe]] 前置 → [[re-ghidra]] / [[re-ida]] / [[re-radare2]] 反编译,C++ 语义走 [[re-cpp-abi]]process.versions.modules)与 Electron 版本一一对应,用错版本加载 .node 会报 ABI 错误——可借此确认目标 Electron 版本动态 CDP 调试:
# 主进程(Node/V8 Inspector,默认端口 9229)
<可执行文件> --inspect=9229
<可执行文件> --inspect-brk=9229 # 启动即暂停,等调试器
# 渲染进程(Chromium CDP,默认端口 9222)
<可执行文件> --remote-debugging-port=9222npx @electron/fuses read --app <可执行文件>:EnableNodeCliInspectArguments 为 Disabled 时 --inspect/--inspect-brk 被忽略(SIGUSR1 也不再开 inspector)——此时只能走渲染进程 CDP 或 [[re-frida]] 注入curl -s http://127.0.0.1:9222/json/list # 列 targets(title/url/webSocketDebuggerUrl)webSocketDebuggerUrl,Runtime.evaluate 执行任意 JS、Console.enable 收日志、Page.captureScreenshot 截图;主进程同法连 --inspect 端口/json/list 实际响应为准,别猜固定端口(应用可能占用/修改);窗口未创建时 target 不会出现,先在 UI 触发再枚举app.requestSingleInstanceLock() 常见)导致二次启动直接退出——用 --user-data-dir=<新目录> 或先结束现有实例--remote-allow-origins=*;Node 客户端无 Origin 头不受影响Runtime.evaluate 执行 process.versions(版本)、process.env(环境变量)、require.cache(已加载模块)——比静态字符串可靠xvfb-run -a 包一层再启动反调试对抗与数据提取:
process.argv/process.execArgv 里的 inspect 参数、DevTools 打开检测(窗口尺寸 outerWidth - innerWidth、console 计时)、debugger 语句、process.versions 异常校验Debugger.enable 前先绕过contextIsolation(Electron 12 起默认 true)、sandbox(Electron 20 起默认 true)、nodeIntegration(默认 false)决定 preload/渲染进程能 require 什么、CDP Runtime.evaluate 要选对执行上下文(主 world vs 隔离 world 的 contextId)ELECTRON_ENABLE_LOGGING=1 或 --enable-logging 打开 Chromium 日志,失败诊断先行.node 模块格式解析前置.jsc(JS 引擎字节码)与 Electron .jsc(V8 字节码)的区分.jsc 是 V8 字节码快照,不是 JS 文本:现象——解出 .jsc 文件后 grep/美化/解析全无效,内容是不可读二进制;原因——bytenode 类工具把 JS 编译成 V8 字节码并移除源码(Function.prototype.toString() 被替换为桩代码,这是识别特征之一);边界——V8 字节码格式未文档化、随 V8 版本变化,目前无公开反编译工具;node --print-bytecode(官方 Node 构建可用)只能打印「运行中」编译出的字节码助记符,不是源码还原;对策——先确认样本 .jsc 的编译环境(魔数/加载器提示、process.versions.v8 对照),能加载就跑行为分析(strace/网络/内存),需要源码语义就找未编译的 .js 副本或 bundle map;版本锁——.jsc 必须由同 V8 版本、同平台/架构的 Node 或 Electron 编译才能加载,跨版本加载直接崩;Electron 42+(V8 ≥ 14.8)主进程加载的 .jsc 需用真实 Electron 主进程编译(bytenode electronMain 模式),ELECTRON_RUN_AS_NODE 方式编译的会在加载时崩溃(read-only snapshot 校验不匹配)——不确定的边界如实报告,不臆断源码内容../编码变体),且 EnableEmbeddedAsarIntegrityValidation fuse 开启时 asar 内容被校验、OnlyLoadAppFromAsar 开启时拒绝非 asar 加载;对策——按 JSON 目录的 size/offset 而非路径语义还原;改包前先 @electron/fuses read,校验开启时改用运行时 hook(frida)或动态分析,不硬改归档ELECTRON_RUN_AS_NODE 行为差异:现象——设了环境变量应用没按预期当 Node 跑,或主进程 .jsc 加载崩溃;原因——该模式下 Electron 只提供 Node 运行时(无 electron API、require('electron') 行为异常),且 RunAsNode fuse 为 Disabled 时该环境变量被完全忽略(连带 process.fork() 失效);对策——先 read fuses 确认 RunAsNode 状态;该模式只用于复跑不依赖 electron API 的逻辑,GUI/窗口代码必须走正常启动Runtime.evaluate 先枚举执行上下文(Runtime.enable 后看 contextId),区分主 world 与隔离 world 再求值;注入/读取面按这三个开关的实际配置设计--inspect、--inspect-brk、ELECTRON_RUN_AS_NODE 全部无效,应用像没收到参数;原因——EnableNodeCliInspectArguments / RunAsNode fuse 被翻转关闭;对策——@electron/fuses read 先确认;fuse 写入会改二进制并破坏签名(macOS 需重新签名,未签名时用 resetAdHocDarwinSignature 选项),这是改打包产物的最后手段,优先换 frida / 渲染进程 CDP 通道requestSingleInstanceLock() 让第二个实例立即退出,CDP 端口可能被应用占用或改掉;对策——用独立 --user-data-dir 绕过单实例锁;端口以 /json/list 实际响应为准;窗口未创建时 target 未暴露,先触发 UI 再枚举© dslsdzc, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .claude/skills/re-electron of dslsdzc/rev-skills.
Open the folder on GitHubat commit bd21db8
Re Electron next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Re Electron this skilldslsdzc/rev-skills | 117 | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | |
| Compileapache/skywalking-nodejs | 180 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | |
| Agentaudit SkillLeoYeAI/openclaw-master-skills | 2.2k | — | ~4.6k | Automated safety check: Notes | MIT | |
| Dependency Scanjwynia/agent-skills | 165 | — | ~1.7k | Automated safety check: Pass | MIT | |
| Container Cve Fix Validatorinfometa/workbuddyskills | 342 | — | ~779 | Automated safety check: Notes | Apache-2.0 | |
| GitHub Actions Supply Chain Pinningasyncapi/generator | 1.1k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 |
apache/skywalking-nodejs
Compile / build / type-check the skywalking-nodejs agent. An agent skill from apache/skywalking-nodejs.
LeoYeAI/openclaw-master-skills
Automatic security gate that checks packages against a vulnerability database before installation.
jwynia/agent-skills
Detect CVEs and security issues in project dependencies. An agent skill from jwynia/agent-skills.
infometa/workbuddyskills
容器安全CVE漏洞修复验证引擎。从容器漏扫报告(Excel)自动提取漏洞,生成修复计划, SSH到测试环境验证OS包(apt/yum/apk)、Python(pip)、Node.js(npm)、Java(JAR)四种包类型的 修复方案,产出修复验证报告。不涉及主机层漏洞修复、不处理容器编排层安全配置。
asyncapi/generator
A skill your agent uses when editing, adding, or reviewing any file under .github/workflows/, or when a CI step installs a CLI tool (npm i -g, npx, pipx, uses: /setup-).
zenstory-ai/oh-story-claudecode
Drives a Chrome window over the DevTools Protocol with the agent-browser CLI, so the agent can reuse your logged-in sessions, read pages and pull tokens.
dslsdzc/rev-skills
威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
Captures an analyzable sample from a live system when the target leaves no file on disk, by finding abnormal executable memory and the execution context that reached it.
dslsdzc/rev-skills
函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
虚拟化逆向:VT-x/SVM、hypervisor 检测、VMCS/EPT 分析, 以及 Xen / QNX Hypervisor / Jailhouse / ACRN / Bao / Hyper-V·VMBus / XtratuM / LynxSecure / Quest-V 的分区与 vdev 语义。
dslsdzc/rev-skills
射频逆向:信号采集、频谱分析、解调、帧同步与协议恢复、重放. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
UEFI/BIOS 固件:SEC/PEI/DXE/BDS 阶段判定、DXE 驱动、UEFI 模块、bootkit. An agent skill from dslsdzc/rev-skills.
Categories
Electron 桌面应用逆向:asar 解包、主/渲染进程 JS、V8 字节码(.jsc)边界、CDP 动态调试、反调试对抗。. Re Electron is an agent skill from dslsdzc/rev-skills.
Re Electron fits situations like: security work in your project.
Run `npx skills add dslsdzc/rev-skills --skill re-electron -a claude-code`. Or copy the skill folder (.claude/skills/re-electron in dslsdzc/rev-skills) into .claude/skills/re-electron in your project. Claude Code loads it when a task matches its description.
Run `npx skills add dslsdzc/rev-skills --skill re-electron -a codex`. Or copy the skill folder (.claude/skills/re-electron in dslsdzc/rev-skills) into .agents/skills/re-electron in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dslsdzc/rev-skills --skill re-electron -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/re-electron, .gemini/skills/re-electron, .github/skills/re-electron and .opencode/skills/re-electron in your project.
Going by SKILL.md and its folder, Re Electron needs the command-line tools its instructions call (npx, npm, apt, brew, node and choco). Our summary lists: Node.js.
SKILL.md contains no URLs. Its commands use npx, npm and curl, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Re Electron is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.7k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Re Electron: Compile (apache/skywalking-nodejs, 180 stars), Agentaudit Skill (LeoYeAI/openclaw-master-skills, 2.2k stars), Dependency Scan (jwynia/agent-skills, 165 stars) and Container Cve Fix Validator (infometa/workbuddyskills, 342 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
dslsdzc (a GitHub user) maintains it in dslsdzc/rev-skills, which has 117 GitHub stars. The repository holds 41 skills in this directory. The repository was last updated on October 5, 2026.
Source: dslsdzc/rev-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.