Game Automation
rehan-remade/universal-modder
Launch, see and drive a real game so an agent can test its own mods.
固件提取与解包:binwalk/unblob、magic 扫描、字节序. An agent skill from dslsdzc/rev-skills.
$ npx skills add dslsdzc/rev-skills --skill re-fw-extract -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install dslsdzc/rev-skills re-fw-extract --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/re-fw-extract .claude/skills/re-fw-extract && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "re-fw-extract" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extract into .claude/skills/re-fw-extract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-fw-extract", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extractType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add dslsdzc/rev-skills --skill re-fw-extract -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install dslsdzc/rev-skills re-fw-extract --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/re-fw-extract .agents/skills/re-fw-extract && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "re-fw-extract" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extract into .agents/skills/re-fw-extract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-fw-extract", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-fw-extract -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install dslsdzc/rev-skills re-fw-extract --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/re-fw-extract .cursor/skills/re-fw-extract && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "re-fw-extract" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extract into .cursor/skills/re-fw-extract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-fw-extract", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/dslsdzc/rev-skills.git --path .claude/skills/re-fw-extract--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add dslsdzc/rev-skills --skill re-fw-extract -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install dslsdzc/rev-skills re-fw-extract --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/re-fw-extract .gemini/skills/re-fw-extract && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "re-fw-extract" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extract into .gemini/skills/re-fw-extract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-fw-extract", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install dslsdzc/rev-skills re-fw-extractInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add dslsdzc/rev-skills --skill re-fw-extract -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/re-fw-extract .github/skills/re-fw-extract && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "re-fw-extract" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extract into .github/skills/re-fw-extract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-fw-extract", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add dslsdzc/rev-skills --skill re-fw-extract -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install dslsdzc/rev-skills re-fw-extract --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/re-fw-extract .opencode/skills/re-fw-extract && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "re-fw-extract" agent skill from https://github.com/dslsdzc/rev-skills/tree/main/.claude/skills/re-fw-extract into .opencode/skills/re-fw-extract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "re-fw-extract", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
re-fw-extract固件提取与解包:binwalk/unblob、magic 扫描、字节序. An agent skill from dslsdzc/rev-skills.
Re Fw Extract is an agent skill from dslsdzc/rev-skills. 固件提取与解包:binwalk/unblob、magic 扫描、字节序。 触发词:固件、binwalk、解包固件、firmware、IoT、MCU、8051、AVR、PIC、MSP430、Intel HEX、.hex
Its SKILL.md is about 2.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security. It works with Linux and macOS. The repository describes itself as: 122 个逆向工程 AI 技能(可发布、跨平台):恶意软件分析 / 软件逆向 / 固件嵌入式 / 协议逆向 / 移动应用 / 脱壳反混淆 / 软件破解 / 漏洞挖掘 / 托管代码 / 取证情报 / CTF。 The licence is Apache-2.0.
5 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit bd21db8. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
aptpipdnfcargobrewpython3gitFrom the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
github.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Re Fw Extract loads about 2.4k tokens when it runs. Until then it costs about 31 tokens; SKILL.md has 726 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from dslsdzc/rev-skills at commit bd21db8, republished under its Apache-2.0 licence (© dslsdzc). 726 words, ~2,406 tokens.
.claude/skills/re-fw-extract/SKILL.md (or your agent's skills folder).所有工具先验证再使用。解包与 magic 扫描是纯静态分析,可免沙箱([[re-analyze/platform-tips]] 最高原则);解出产物要运行时转 [[re-fw-emulate]]。
binwalk 有两条并存的产品线,装前先分辨:v3(Rust 重写)是 upstream 当前主线,v2(原 Python 实现)属 legacy,两者的参数集合与模块支持不同。
cargo install binwalk / 源码构建。upstream 已不再把 pip 当作安装入口binwalk 包停在 2.1.0(2015-01),各发行版仓库包同属 2.x 线(Debian trixie 2.4.3、bookworm 2.3.4)apt install binwalk(Debian/Ubuntu)/ dnf install binwalk / pacman -S binwalkpip install binwalkbrew install binwalkbinwalk --version——使用前先确认 major。本技能的命令示例(-e / -M / -E)在 v2 与 v3 均保留;需要 v3 的其它参数时按实际版本查 binwalk --helppip install unblob(依赖较多,建议 venv: python3 -m venv venv && venv/bin/pip install unblob)unblob --versiondd --versionapt install bsdmainutils(Debian/Ubuntu)/ dnf install util-linux(Fedora/RHEL,含 hexdump)hexdump -C /dev/null(无报错即可用;macOS 版无 --version)git clone https://github.com/devttys0/sasquatch,需 apt install zlib1g-dev liblzma-dev build-essential 后 make)sasquatch -h 输出用法(编译产物在仓库子目录,需加入 PATH)按顺序执行,每步记下结果。
自动解包(unblob 优先,binwalk 兜底):
unblob firmware.bin # 更准,自动识别 50+ 容器格式并递归解包
# 或 binwalk:
binwalk firmware.bin # 先列出签名与偏移
binwalk -Me firmware.bin # -M 递归 -e 提取产物:firmware.bin/(unblob)或 _firmware.bin.extracted/(binwalk)目录。解出的文件系统转 [[re-fw-rootfs]],ELF 转 [[re-binary-core]]。
magic 手工扫描(自动解包不全时):
hexdump -C firmware.bin | head -40
# 或按 binwalk 报告的偏移核对:
dd if=firmware.bin bs=1 skip=<偏移> count=16 | hexdump -C常见魔数:JPEG FF D8 FF、gzip 1F 8B、squashfs hsqs、cramfs 45 3D CD 28(小端,大端反序)、U-Boot 27 05 19 56、jffs2 85 19、ELF 7F 45 4C 46。识别出一个就按该格式处理。
字节序判断:
file firmware.bin # 输出含 LSB/MSB 提示
readelf -h <解出的ELF> # Machine 字段 + Data 字段(大小端)
strings firmware.bin | head # 可读串确认字节序大端 ARM/MIPS 固件常见:大端时魔数与字符串按大端编码(如 hsqs 反序出现);确认后整个流程按该字节序进行。
嵌套容器逐层解:
binwalk -Me 会自动递归,但嵌套(tar 里再 zip、自定义头包着 gzip)常中途断file 确认内层类型 → 用对应工具(tar/gzip 系统自带;squashfs 用 sasquatch;其他用 [[re-fw-rootfs]] 工具准备的 7z/unsquashfs)再解,直到出现文件系统或 ELFIEND、JPEG FFD9)等格式的结束标记之后常附加容器/压缩流(解析器读到结束标记即停,附加数据对正常查看不可见)——file 会把整文件报成图片。定结束标记位置不能靠裸字节 first/last 搜索(IEND 字样可出现在 tEXt chunk 载荷内、FF D9 可出现在 JPEG 的 APP/COM 段内,首个/末个命中都可能是假标记):PNG 从 8 字节签名起按 Length/Type/Data/CRC 遍历到结构合法且长度为 0 的 IEND,JPEG 从 SOI 起按 marker/segment 解析、SOS 后按 FF00 stuffing 与 RSTn 处理,取语法位置成立的 EOI;用解析出的真实结尾偏移去切附加数据(裸搜结果只作候选)PK\x03\x04(4 字节被剥)——用字段自洽验证:补上签名后 version(常见 20/45)、mod date(年 1980+)、compressed/uncompressed size(与 EOCD/中央目录条目一致)全部合理,且 EOCD 在尾部完好 → 补 PK\x03\x04 前缀即完整可解(unzip 报 "missing 4 bytes" 或 zipfile OSError: Invalid argument 是典型征兆)自动失败时手工切分(dd 按偏移):
binwalk firmware.bin # 找内嵌文件偏移
dd if=firmware.bin of=part1.bin bs=1 skip=<偏移1> count=<长度1>
dd if=firmware.bin of=part2.bin bs=1 skip=<偏移2>
file part*.bin # 每块验证厂商自定义头最常见:跳过头部 N 字节后才是标准格式(先 hexdump 目测头长度再切)。
file 报 data/unknown;strings 无操作系统与库特征串(无 "libc"、无 RTOS 内核名);镜像开头低地址处是短跳转/向量数据而非可读头:LLAAAATT<数据><校验和>——LL 数据长度、AAAA 段内地址、TT 记录类型(00 数据 / 01 结束 / 02·04 扩展地址 / 03·05 起始地址)、末字节校验和file + readelf -h 确认字节序(步骤 3),后续解包/分析全程保持一致file 报 data;原因——签名误报或切分偏移错位;对策——每个产物 file + 看头 16 字节验证 magic,无效即重试偏移.jpg 报 PNG、.so 报 tar、.c 报 XZ;原因——作者故意用无关扩展名(隐写/套娃/免检场景常见);对策——永远以 file/魔数为准,扩展名只当线索;file 输出带 "with extra data prepended" 等提示时直接照做unzip 报 "missing 4 bytes"/"invalid zip with overlapped components"(zip bomb 误报)或 Python zipfile OSError: [Errno 22] Invalid argument;原因——本地文件头缺 PK\x03\x04 签名,或数据前有前缀垃圾;对策——先 unzip -l 看能否列出(能列出说明 EOCD/中央目录完好),补签名(步骤 4)或用 UNZIP_DISABLE_ZIPBOMB_DETECTION=TRUE 强制rbe_utok_check 定位校验逻辑:标志位 UTOK[0x298]==1 才启动调试能力(厂家默认 FF 不启动),且 DCI 开放受多层校验链控制(boot_mode==2、boot_cfg 解析、CT handler 门控、FPF Debug Auth 等),单改标志位不够;定位技巧:ME 运行 base 是 0x4000,字符串偏移按此换算num_records(偏移 +0x06 的 uint16)无校验,record 数超 100 覆写栈 cookie/返回地址),ROP 却打不通;原因——ME 的 cookie 由 ROM(mask ROM 不可提取)在 SRAM 预填充进程上下文表生成,无法像 TXE 平台那样用 TLS 绕过;对策——先确认目标平台 cookie 来源(ROM 生成则溢出利用受限),完整逆向认证链路(UTOK→boot_cfg→CT handler 多层校验)后找非溢出路径mask = block[0]、plain[i] = ROR8(packed[i], n) XOR mask(mask 字节自身不参与变换,i 从 1 起));对策——先用强 crib(向量表 SRAM 栈指针/Thumb Reset Vector)约束恢复首块,再验证模型© dslsdzc, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .claude/skills/re-fw-extract of dslsdzc/rev-skills.
Open the folder on GitHubat commit bd21db8
Re Fw Extract next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Re Fw Extract this skilldslsdzc/rev-skills | 130 | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | |
| Game Automationrehan-remade/universal-modder | 5.8k | — | ~1.9k | Automated safety check: Pass | MIT | |
| Ctf Cryptoljagiello/ctf-skills | 3.4k | — | ~11k | Automated safety check: Notes | MIT | |
| Os Hardware Inventorycdxgen/cdxgen | 1.1k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 | |
| Forensics OsqueryAgentSecOps/SecOpsAgentKit | 220 | 1 repos | ~4.9k | Automated safety check: Notes | Custom licence | |
| Bumblebeesickn33/agentic-awesome-skills | 47k | 1 repos | ~2.5k | Automated safety check: Notes | MIT |
rehan-remade/universal-modder
Launch, see and drive a real game so an agent can test its own mods.
ljagiello/ctf-skills
Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills.
cdxgen/cdxgen
Collects live operating-system inventory (OBOM) and host hardware inventory (HBOM) as CycloneDX documents using the cdxgen obom and hbom commands, including osquery-backed runtime artifacts, Linux…
AgentSecOps/SecOpsAgentKit
SQL-powered forensic investigation and system interrogation using osquery to query operating systems as relational databases.
sickn33/agentic-awesome-skills
Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs.
mukul975/Anthropic-Cybersecurity-Skills
Analyze memory dumps using Volatility3 plugins to detect injected code, rootkits, credential theft, and malware artifacts in Windows, Linux, and macOS memory images.
dslsdzc/rev-skills
Captures an analyzable sample from a live system when the target leaves no file on disk, by finding abnormal executable memory and the execution context that reached it.
dslsdzc/rev-skills
Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation.
dslsdzc/rev-skills
威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
ELF 格式解析:ehdr/phdr/shdr、GOT/PLT、initarray、符号恢复. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills.
dslsdzc/rev-skills
Frida 动态插桩(桌面+移动统一). An agent skill from dslsdzc/rev-skills.
Categories
固件提取与解包:binwalk/unblob、magic 扫描、字节序. An agent skill from dslsdzc/rev-skills. Re Fw Extract is an agent skill from dslsdzc/rev-skills.
Re Fw Extract fits situations like: security work in your project.
Run `npx skills add dslsdzc/rev-skills --skill re-fw-extract -a claude-code`. Or copy the skill folder (.claude/skills/re-fw-extract in dslsdzc/rev-skills) into .claude/skills/re-fw-extract in your project. Claude Code loads it when a task matches its description.
Run `npx skills add dslsdzc/rev-skills --skill re-fw-extract -a codex`. Or copy the skill folder (.claude/skills/re-fw-extract in dslsdzc/rev-skills) into .agents/skills/re-fw-extract in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dslsdzc/rev-skills --skill re-fw-extract -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/re-fw-extract, .gemini/skills/re-fw-extract, .github/skills/re-fw-extract and .opencode/skills/re-fw-extract in your project.
Going by SKILL.md and its folder, Re Fw Extract needs the command-line tools its instructions call (apt, pip, dnf, cargo, brew and python3). Our summary lists: Python 3; Docker.
SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Re Fw Extract is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.4k tokens (SKILL.md is roughly 9.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Re Fw Extract: Game Automation (rehan-remade/universal-modder, 5.8k stars), Ctf Crypto (ljagiello/ctf-skills, 3.4k stars), Os Hardware Inventory (cdxgen/cdxgen, 1.1k stars) and Forensics Osquery (AgentSecOps/SecOpsAgentKit, 220 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
dslsdzc (a GitHub user) maintains it in dslsdzc/rev-skills, which has 130 GitHub stars. The repository holds 40 skills in this directory. The repository was last updated on October 5, 2026.
Source: dslsdzc/rev-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.