Agent skill

Re Hardware Io

by dslsdzc in dslsdzc/rev-skills

硬件接口:JTAG/UART/flash 读取. An agent skill from dslsdzc/rev-skills.

Apache-2.0Auto-check passedSecurity

Install Re Hardware Io

skills CLI
$ npx skills add dslsdzc/rev-skills --skill re-hardware-io -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install dslsdzc/rev-skills re-hardware-io --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/dslsdzc/rev-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/re-hardware-io .claude/skills/re-hardware-io && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
re-hardware-io
GitHub stars
130
Token cost
~1.2k tokens
SKILL.md length
420 words
Files
3 (incl. references)
Skills in repo
40
Repo updated
First seen
Licence
Apache-2.0

At a glance

硬件接口:JTAG/UART/flash 读取. An agent skill from dslsdzc/rev-skills.

  • Works in 5 steps: 板子拆解与接口定位 → UART 串口调试(波特率枚举) → JTAG/SWD 连接(openocd) → …
  • Security work in your project
  • SKILL.md covers 何时使用 / 何时不用, 工具准备, 操作步骤 and 跨域联合, plus 1 more section
  • Calls apt, dnf and brew; reaches github.com

What it does

Re Hardware Io is an agent skill from dslsdzc/rev-skills. 硬件接口:JTAG/UART/flash 读取。 触发词:JTAG、UART、串口、flash芯片、硬件提取、逻辑分析仪

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `references/commands.md` and `references/gotchas.md`).

It sits in Security. It works with Linux, Homebrew and macOS. The repository describes itself as: 122 个逆向工程 AI 技能(可发布、跨平台):恶意软件分析 / 软件逆向 / 固件嵌入式 / 协议逆向 / 移动应用 / 脱壳反混淆 / 软件破解 / 漏洞挖掘 / 托管代码 / 取证情报 / CTF。 The licence is Apache-2.0.

When your agent uses it

  • Security work in your project

Example prompts

  • “/re-hardware-io”

Requirements

  • Python 3

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. 板子拆解与接口定位
  2. UART 串口调试(波特率枚举)
  3. JTAG/SWD 连接(openocd)
  4. flash 芯片读取(flashrom/编程器)
  5. 启动日志抓取

What it can do on your machine

Read from SKILL.md and the folder at commit bd21db8. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • apt
    • dnf
    • brew
    • choco
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Re Hardware Io loads about 1.2k tokens when it runs, and up to ~3.6k if it reads all its reference files. Until then it costs about 19 tokens; SKILL.md has 420 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~19
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~3.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from dslsdzc/rev-skills at commit bd21db8, republished under its Apache-2.0 licence (© dslsdzc). 420 words, ~1,229 tokens.

Download SKILL.mdSave it as .claude/skills/re-hardware-io/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
re-hardware-io
description
硬件接口:JTAG/UART/flash 读取。 触发词:JTAG、UART、串口、flash芯片、硬件提取、逻辑分析仪
capabilities
hardware-interface

硬件接口(JTAG / UART / Flash 读取)

何时使用 / 何时不用

  • 用:有实物板子,需要提取固件、抓启动日志、硬件调试
  • 用:JTAG/SWD 调试、UART 串口、flash 芯片直读、逻辑分析仪抓信号
  • 不用:只有固件文件(走 [[re-fw-extract]],硬件提取是最后手段)
  • 不用:已解出 rootfs 只需静态分析(走 [[re-fw-rootfs]])
  • 不用:需要运行固件(先试 [[re-fw-emulate]] 更安全、更便宜)

工具准备

所有工具先验证再使用。硬件操作风险高:先万用表测电平、共地、核对丝印再上电(见坑 3/4)。遵循 [[re-analyze/platform-tips]] 先给最轻可行方案:软件手段(文件→解包→仿真)耗尽后再上硬件。

openocd —— JTAG/SWD 调试
  • Linux: apt install openocd / dnf install openocd / pacman -S openocd
  • macOS: brew install openocd
  • Windows: choco install openocd(或官方 Windows 构建)
  • 验证: openocd --version
picocom / minicom —— 串口终端
  • Linux: apt install picocom(或 apt install minicom)/ dnf install picocom / pacman -S picocom
  • macOS: brew install picocom
  • Windows: choco install putty(PuTTY 支持串口)或 WSL 内 Linux 版
  • 验证: picocom --version
flashrom —— flash 芯片读取
  • Linux: apt install flashrom / dnf install flashrom / pacman -S flashrom
  • macOS: brew install flashrom
  • Windows: 官方构建或 WSL(编程器 ch341a 在 WSL 内用 flashrom -p ch341a_spi)
  • 验证: flashrom --version
逻辑分析仪(sigrok-cli / pulseview)
  • Linux: apt install sigrok-cli pulseview / dnf install sigrok-cli pulseview / pacman -S sigrok-cli pulseview
  • macOS: brew install sigrok-cli pulseview
  • Windows: sigrok 官方 Windows 安装包(sigrok.org)
  • 验证: sigrok-cli --version / pulseview --version
JTAGulator —— 引脚识别板(开源硬件)
  • 开源硬件项目 git clone https://github.com/grandideastudio/JTAGulator(含固件与文档);需自行购买/打样 JTAGulator 板
  • 验证: 串口连接后发送 help 显示命令清单
  • 用它对未知板自动枚举 UART/JTAG 引脚(步骤 1/2 的得力工具)
硬件选购指引(常见方案与电平)
  • USB-UART 适配器: CH340 / CP2102 / FTDI 三种芯片方案均可,选支持 3.3V TTL 电平的型号(带 3.3V/5V 跳线更通用)——3.3V 板上插 5V TTL 会烧接口(见坑 3)
  • 调试器: ST-Link v2(STM32 系,SWD/JTAG 都支持)、J-Link(通用,授权收费)、CMSIS-DAP/DAPLink(开源固件方案)——按目标芯片厂牌选
  • SPI flash 编程器: ch341a(最便宜的 SOIC8 方案)+ 夹子/测试座;多协议需求用 RT809H 类编程器
  • 逻辑分析仪: 采样率按信号速率选——UART 115200 与低速 SPI 用 8 通道 24MHz 级别够用;高速 SPI(数十 MHz)需要 100MHz+ 采样(经验值:采样率至少为信号速率的 4 倍)
  • 电平转换: 1.8V/2.5V 板子与 3.3V 工具混接时用 TXS0108 类双向电平转换模块
Show full SKILL.md (260 more words)Show less

操作步骤

按顺序执行,每步记下结果。

  1. 板子拆解与接口定位:
    • 拆壳观察 PCB:丝印(TX/RX、VCC、GND、JTAG/SWD 测试点)、插针、flash 芯片型号(如 W25Q128、MX25L、GD25Q)
    • 万用表:测供电电平(3.3V 常见,也有 5V / 1.8V)、找 GND;UART TX 脚特征——上电瞬间拉高到逻辑高电平的方波
    • 拍照存档:丝印、引脚编号、flash 型号,供后续接线核对
  2. UART 串口调试(波特率枚举):
    sh
    picocom -b 115200 /dev/ttyUSB0        # 先试 115200
    # 乱码 → Ctrl+A Ctrl+X 退出,换 9600 / 57600 / 38400 / 19200 / 230400
    # 或 minicom -D /dev/ttyUSB0
    • TX/RX 需交叉接线(板子 TX ↔ 适配器 RX);共地必须
    • 上电瞬间抓启动日志——是了解系统最快途径(见坑 4)
  3. JTAG/SWD 连接(openocd):
    sh
    openocd -f interface/stlink.cfg -f target/stm32f1x.cfg   # ST-Link + SWD 示例
    # 其他适配器在 /usr/share/openocd/scripts/interface/ 下选对应 cfg
    • 确认接口类型(JTAG 4/5 线 vs SWD 2 线)与电平(1.8V 板子需电平适配器)
    • 连上后 halt 暂停、读寄存器、dump flash(flash read_bank 0 dump.bin)
    • 一行命令模式(脚本化/无交互): openocd -f interface/stlink.cfg -f target/stm32f1x.cfg -c "init; halt; flash read_bank 0 dump.bin; exit"
  4. flash 芯片读取(flashrom/编程器):
    sh
    # 板载 SPI flash(linux_spi 需内核 spidev 支持):
    flashrom -p linux_spi:dev=/dev/spidev0.0 -r backup.bin
    # 离线读取(ch341a 编程器 + SOIC8 夹子,先断电):
    flashrom -p ch341a_spi -r backup.bin
    • 核对芯片型号与封装(SOIC8 夹子/测试座),引脚方向别接反
    • 读出的镜像转 [[re-fw-extract]] 解包
  5. 启动日志抓取:
    • 串口连好 → 板子上电 → 全量抓日志(picocom 输出 tee log.txt,或 minicom 捕获)
    • 日志含 bootloader、内核启动、文件系统挂载、服务自启信息;与 [[re-fw-rootfs]] 的启动脚本对照定位
    • UART 没输出 → 回到步骤 1 复查接线/波特率,或用逻辑分析仪抓 TX 脚波形验证

跨域联合

  • [[re-firmware]]:工作流第 5 步(需实物时)调用本技能
  • 提取的 flash 镜像 → [[re-fw-extract]] 解包 → [[re-fw-rootfs]] 分析;需要运行 → [[re-fw-emulate]]
  • 硬件上抓到的通信/协议 → [[re-protocol]]
  • 硬件提取是固件分析的最后手段:软件手段(文件 → 解包 → 仿真)全部耗尽后再上
  • 物理层芯片/PCB 分析(decap/裸片/木马检测)→ [[re-hw-chip]]

常见坑与陷阱

  • 波特率不对 → 乱码:现象——串口输出全是乱码或无输出;原因——波特率/数据位不匹配、TX/RX 接反;对策——按 9600 / 115200 优先枚举(57600 / 38400 / 230400 兜底),用逻辑分析仪看 TX 波形验证,共地必须
  • JTAG 被熔断/锁定:现象——openocd 连不上,IDCODE 全 0 或超时;原因——量产板熔断 JTAG、读保护(RDP)开启;对策——试 SWD、stm32f1x unlock 类解锁序列,或放弃 JTAG 改走 UART + flash 直读(步骤 4)
  • 5V/3.3V 电平误接烧板:现象——接线后板子发热/冒烟/永久损坏;原因——电平不匹配(3.3V 板上接 5V TTL)、供电接错、VCC/GND 反接;对策——先万用表测电平与 GND 再接线;3.3V 系统用 3.3V 适配器;绝不带电插拔
  • 先看启动日志再动手:现象——盲目拆焊 flash / 连 JTAG 导致损坏或数据丢失;原因——跳过低成本观察直接上硬件手段;对策——先 UART 抓启动日志了解系统(步骤 2/5),再决定是否硬件读取——这是 [[re-analyze/platform-tips]] 先给最轻可行方案在硬件域的执行
  • Intel DCI 调试工具链兼容性坑:现象——Intel System Studio 2019(System Debugger)在 Win10/11 安装/运行失败,DCI 线缆连不上 CPU;原因——该软件基于 Win7 开发且带环境检测与 License 校验:Win11 提示缺 Win7 安全补丁、公开 License 文件在 Windows 版无效;对策——安装用兼容模式;运行加 --noprereq 跳过环境检查;License 校验核心在 issa.dll 导出函数中(三个校验函数),patch 后替换即可;DCI 配置按平台选型(如 KBL=Kaby Lake、SPT=200 系主板、DBC=Debug Class 线缆),CLI 调试用 DAL 目录的 PythonConsole.cmd(Python 2.7 环境,itp.cores/itp.halt() 等命令);ME 端需 UTOK 解锁才响应调试命令(见 [[re-fw-extract]])
  • 命令族速查与操作序列见 [[commands]];工具特有坑与版本差异见 [[gotchas]]

© dslsdzc, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files (references) in .claude/skills/re-hardware-io of dslsdzc/rev-skills.

  • SKILL.md
  • references/commands.md
  • references/gotchas.md

Open the folder on GitHubat commit bd21db8

Compare with similar skills

Re Hardware Io next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Re Hardware Io compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Re Hardware Io this skilldslsdzc/rev-skills130—~1.2kAutomated safety check: PassApache-2.0
Ctf Cryptoljagiello/ctf-skills3.4k—~11kAutomated safety check: NotesMIT
Gearcoleco Debuggingdrhelius/Gearcoleco142—~3.5kAutomated safety check: PassGPL-3.0
Ccapwysaid/CameraCapture191—~1.4kAutomated safety check: PassMIT
Install Mimi Remotegaixianggeng/mimi-remote104—~2.8kAutomated safety check: PassGPL-3.0
Env Doctorcat-xierluo/legal-skills717—~756Automated safety check: PassMIT

Similar skills

  • Ctf Crypto

    ljagiello/ctf-skills

    Provides cryptography attack techniques for CTF challenges. An agent skill from ljagiello/ctf-skills.

    3.4k GitHub stars~11k tokensUpdated 26 days ago
    SecurityAuto-check: notes
  • Gearcoleco Debugging

    drhelius/Gearcoleco

    Debug and trace ColecoVision and Super Game Module games using the Gearcoleco emulator MCP server.

    142 GitHub stars~3.5k tokensUpdated 3 days ago
    DevelopmentAuto-check passed
  • Ccap

    wysaid/CameraCapture

    Install or use the ccap CLI for camera capture, webcam inspection, device listing, frame capture, and video metadata.

    191 GitHub stars~1.4k tokensUpdated 3 mo ago
    MobileAuto-check passed
  • Install Mimi Remote

    gaixianggeng/mimi-remote

    安装、配置、配对、迁移、升级、诊断、回滚或卸载 Mimi Remote;在 macOS 上安装和维护 Mimi Remote Mac 菜单栏 App / DMG,或通过 Homebrew、Linux user-systemd 部署 agentd;从源码构建 iPhone/iPad App;配置 Codex 主通道和可选 Claude Code 实验 Runtime。用户提出“安装 Mimi…

    104 GitHub stars~2.8k tokensUpdated yesterday
    MobileAuto-check passed
  • Env Doctor

    cat-xierluo/legal-skills

    本机开发环境与全局包的体检、账本与安装纪律,覆盖所有包管理器(npm/npx、nvm、pip/pipx、uv、brew、bun)与运行时环境面(~/.local/bin 垫片、PATH、python 解释器版图、LaunchAgents、cron、shell rc 漂移对照)。当用户问「node/python 为什么是这个版本」「npm/pip…

    717 GitHub stars~756 tokensUpdated yesterday
    Productivity & AutomationAuto-check passed
  • 当用户希望把本机 Codex、ChatGPT Codex 或 Claude Code 订阅通过 localhost 暴露为 OpenAI 兼容端点,或希望在代理验证成功后把它添加成 NextClaw 自定义 provider 时使用。负责 CLIProxyAPI 安装检查、安全配置、OAuth 登录、Homebrew/systemd 持久托管、重启存活验收、NextClaw provider…

    260 GitHub stars~1.9k tokensUpdated yesterday
    Backend & APIsAuto-check: notes

More from dslsdzc/rev-skills

All 40 skills in this repo
  • Captures an analyzable sample from a live system when the target leaves no file on disk, by finding abnormal executable memory and the execution context that reached it.

    130 GitHub stars~2k tokensUpdated 4 days ago
    Auto-check passed
  • APK Static Analysis

    dslsdzc/rev-skills

    Guides static analysis of an Android APK with jadx and apktool: reading the manifest, Java code, resources and permissions, and recognizing hardening or obfuscation.

    130 GitHub stars~2k tokensUpdated 4 days ago
    Auto-check passed
  • Re Attribution

    dslsdzc/rev-skills

    威胁归因方法论:钻石模型、基础设施图谱、置信度分级与归因报告. An agent skill from dslsdzc/rev-skills.

    130 GitHub stars~1.1k tokensUpdated 4 days ago
    Auto-check passed
  • Re Format Elf

    dslsdzc/rev-skills

    ELF 格式解析:ehdr/phdr/shdr、GOT/PLT、initarray、符号恢复. An agent skill from dslsdzc/rev-skills.

    130 GitHub stars~1.9k tokensUpdated 4 days ago
    Auto-check passed
  • Re Fp Runtime

    dslsdzc/rev-skills

    函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills.

    130 GitHub stars~1.4k tokensUpdated 4 days ago
    Auto-check passed
  • Re Frida

    dslsdzc/rev-skills

    Frida 动态插桩(桌面+移动统一). An agent skill from dslsdzc/rev-skills.

    130 GitHub stars~2.8k tokensUpdated 4 days ago
    Auto-check passed

Categories

Questions about Re Hardware Io

What does Re Hardware Io do?

硬件接口:JTAG/UART/flash 读取. An agent skill from dslsdzc/rev-skills. Re Hardware Io is an agent skill from dslsdzc/rev-skills.

When should I use Re Hardware Io?

Re Hardware Io fits situations like: security work in your project.

How do I install Re Hardware Io in Claude Code?

Run `npx skills add dslsdzc/rev-skills --skill re-hardware-io -a claude-code`. Or copy the skill folder (.claude/skills/re-hardware-io in dslsdzc/rev-skills) into .claude/skills/re-hardware-io in your project. Claude Code loads it when a task matches its description.

How do I install Re Hardware Io in Codex?

Run `npx skills add dslsdzc/rev-skills --skill re-hardware-io -a codex`. Or copy the skill folder (.claude/skills/re-hardware-io in dslsdzc/rev-skills) into .agents/skills/re-hardware-io in your project. Codex loads it when a task matches its description.

Can I use Re Hardware Io in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dslsdzc/rev-skills --skill re-hardware-io -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/re-hardware-io, .gemini/skills/re-hardware-io, .github/skills/re-hardware-io and .opencode/skills/re-hardware-io in your project.

What does Re Hardware Io need to run?

Going by SKILL.md and its folder, Re Hardware Io needs the command-line tools its instructions call (apt, dnf, brew, choco and git). Our summary lists: Python 3.

Does Re Hardware Io access the network?

SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Re Hardware Io safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Re Hardware Io use?

Re Hardware Io is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Re Hardware Io use?

About 1.2k tokens (SKILL.md is roughly 4.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.4k tokens, read only when the agent opens those files.

What are the alternatives to Re Hardware Io?

Skills that share tags, products or a category with Re Hardware Io: Ctf Crypto (ljagiello/ctf-skills, 3.4k stars), Gearcoleco Debugging (drhelius/Gearcoleco, 142 stars), Ccap (wysaid/CameraCapture, 191 stars) and Install Mimi Remote (gaixianggeng/mimi-remote, 104 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Re Hardware Io?

dslsdzc (a GitHub user) maintains it in dslsdzc/rev-skills, which has 130 GitHub stars. The repository holds 40 skills in this directory. The repository was last updated on October 5, 2026.

Source: dslsdzc/rev-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.