Agent skill

Dma Attack Techniques

by gmh5225 in gmh5225/awesome-game-security

Analyze PCIe DMA threats, host-mediated memory acquisition, FPGA behavior, and IOMMU defenses.

MITAuto-check passed

Install Dma Attack Techniques

skills CLI
$ npx skills add gmh5225/awesome-game-security --skill dma-attack-techniques -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install gmh5225/awesome-game-security dma-attack-techniques --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/gmh5225/awesome-game-security.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/dma-attack .claude/skills/dma-attack-techniques && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
dma-attack-techniques
GitHub stars
3.6k
Token cost
~415 tokens
SKILL.md length
123 words
Files
10 (incl. references)
Skills in repo
12
Repo updated
First seen
Licence
MIT

At a glance

Analyze PCIe DMA threats, host-mediated memory acquisition, FPGA behavior, and IOMMU defenses.

  • The memory initiator
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Device boundary matters
  • Use kernel security for host-only mechanisms

What it does

Dma Attack Techniques is an agent skill from gmh5225/awesome-game-security. Analyze PCIe DMA threats, host-mediated memory acquisition, FPGA behavior, and IOMMU defenses. Use when the memory initiator or device boundary matters; use kernel security for host-only mechanisms.

Its SKILL.md is about 420 tokens, which your agent loads only when the skill is triggered. The skill folder holds 10 other files, including reference files (for example `references/acquisition-and-transport.md`, `references/assurance-boundaries.md` and `references/classification-and-threat-model.md`).

The repository describes itself as: awesome game security [Welcome to PR]. The licence is MIT.

When your agent uses it

  • The memory initiator
  • Device boundary matters
  • Use kernel security for host-only mechanisms

Example prompts

  • “/dma-attack-techniques”

What it can do on your machine

Read from SKILL.md and the folder at commit 8502288. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Dma Attack Techniques loads about 415 tokens when it runs, and up to ~28k if it reads all its reference files. Until then it costs about 55 tokens; SKILL.md has 123 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~55
When it runs · the whole SKILL.md, loaded when a task matches
~415
With references · SKILL.md plus every file in references/, read only if the agent opens them
~28k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from gmh5225/awesome-game-security at commit 8502288, republished under its MIT licence (© gmh5225). 123 words, ~415 tokens.

Download SKILL.mdSave it as .claude/skills/dma-attack-techniques/SKILL.md (or your agent's skills folder). This skill also uses 9 other files; get the full folder from GitHub.
name
dma-attack-techniques
description
Analyze PCIe DMA threats, host-mediated memory acquisition, FPGA behavior, and IOMMU defenses. Use when the memory initiator or device boundary matters; use kernel security for host-only mechanisms.

DMA attack techniques

Identify the memory initiator, transport, required privilege, isolation boundary, and observable artifacts before classifying a technique as DMA.

Topic routing

Use windows-kernel-security for host driver and kernel internals. Apply game-security-research-rigor before turning architecture claims into findings.

© gmh5225, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 9 other files (references) in .claude/skills/dma-attack of gmh5225/awesome-game-security.

  • SKILL.md
  • references/acquisition-and-transport.md
  • references/assurance-boundaries.md
  • references/classification-and-threat-model.md
  • references/detection-and-forensics.md
  • references/iommu-and-defense.md
  • references/iommu-state-verification.md
  • references/pcie-devices.md
  • references/repository-map.md
  • references/repository-resources.md

Open the folder on GitHubat commit 8502288

Compare with similar skills

Dma Attack Techniques next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Dma Attack Techniques compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Dma Attack Techniques this skillgmh5225/awesome-game-security3.6k—~415Automated safety check: PassMIT
Implementing Threat Modeling With Mitre Attackmukul975/Anthropic-Cybersecurity-Skills34k—~3.4kAutomated safety check: PassApache-2.0
Mapping Mitre Attack Techniquesmukul975/Anthropic-Cybersecurity-Skills34k—~1.8kAutomated safety check: PassApache-2.0
Performing Threat Modeling With Owasp Threat Dragonmukul975/Anthropic-Cybersecurity-Skills34k—~2.1kAutomated safety check: PassApache-2.0
Harness Threat Modelruvnet/ruflo74k—~363Automated safety check: NotesMIT
Rsa Attack Techniquesyaklang/hack-skills2.4k—~2.9kAutomated safety check: PassMIT

Similar skills

  • Implementing Threat Modeling With Mitre Attack

    mukul975/Anthropic-Cybersecurity-Skills

    Implements threat modeling using the MITRE ATT&CK framework to map adversary TTPs against organizational assets, assess detection coverage gaps, and prioritize defensive investments.

    34k GitHub stars~3.4k tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Mapping Mitre Attack Techniques

    mukul975/Anthropic-Cybersecurity-Skills

    Maps observed adversary behaviors, security alerts, and detection rules to MITRE ATT&CK techniques and sub-techniques to quantify detection coverage and guide control prioritization.

    34k GitHub stars~1.8k tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Performing Threat Modeling With Owasp Threat Dragon

    mukul975/Anthropic-Cybersecurity-Skills

    Uses OWASP Threat Dragon (web or desktop) to build data flow diagrams, identify threats with STRIDE, LINDDUN, CIA, DIE, or PLOT4ai methodologies via its auto-generation rule engine, and produce PDF…

    34k GitHub stars~2.1k tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Enterprise-review-grade threat model from harness threat-model <path.

    74k GitHub stars~363 tokensUpdated today
    SecurityAuto-check: notes
  • Rsa Attack Techniques

    yaklang/hack-skills

    RSA attack playbook for CTF and real-world cryptanalysis. An agent skill from yaklang/hack-skills.

    2.4k GitHub stars~2.9k tokensUpdated 25 days ago
    SecurityAuto-check passed
  • Threat Modeling

    sickn33/agentic-awesome-skills

    Conduct threat modeling using STRIDE methodology. An agent skill from sickn33/agentic-awesome-skills.

    47k GitHub starsUsed in 2 repos~4.3k tokens
    SecurityAuto-check passed

More from gmh5225/awesome-game-security

All 12 skills in this repo
  • Awesome Game Security Overview

    gmh5225/awesome-game-security

    Find, select, classify, or maintain resources in awesome-game-security.

    3.6k GitHub stars~301 tokensUpdated today
    Auto-check passed
  • Game Security Research Rigor

    gmh5225/awesome-game-security

    Verify consequential or disputed game-security claims with primary sources, reproducible evidence, explicit trust boundaries, and calibrated uncertainty.

    3.6k GitHub stars~326 tokensUpdated today
    Auto-check passed
  • Anti Cheat Systems

    gmh5225/awesome-game-security

    Analyze layered anti-cheat architecture, detection evidence, telemetry, and enforcement tradeoffs.

    3.6k GitHub stars~353 tokensUpdated today
    Auto-check passed
  • Game Engine Resources

    gmh5225/awesome-game-security

    Analyze game-engine internals and select version-matched resources for Unreal, Unity, Source, Godot, or custom engines.

    3.6k GitHub stars~281 tokensUpdated today
    Auto-check passed
  • Game Hacking Techniques

    gmh5225/awesome-game-security

    Classify game-cheat capabilities and their defensive implications across memory, injection, rendering, input, engines, kernels, DMA, and remote transports.

    3.6k GitHub stars~356 tokensUpdated today
    Auto-check passed
  • Game Server Security

    gmh5225/awesome-game-security

    Review multiplayer authority, RPCs, sessions, authorization, replication, inventory, economy, purchases, retries, and replay.

    3.6k GitHub stars~258 tokensUpdated today
    Auto-check passed

Questions about Dma Attack Techniques

What does Dma Attack Techniques do?

Analyze PCIe DMA threats, host-mediated memory acquisition, FPGA behavior, and IOMMU defenses. Dma Attack Techniques is an agent skill from gmh5225/awesome-game-security. Analyze PCIe DMA threats, host-mediated memory acquisition, FPGA behavior, and IOMMU defenses.

When should I use Dma Attack Techniques?

Dma Attack Techniques fits situations like: the memory initiator; device boundary matters; use kernel security for host-only mechanisms.

How do I install Dma Attack Techniques in Claude Code?

Run `npx skills add gmh5225/awesome-game-security --skill dma-attack-techniques -a claude-code`. Or copy the skill folder (.claude/skills/dma-attack in gmh5225/awesome-game-security) into .claude/skills/dma-attack-techniques in your project. Claude Code loads it when a task matches its description.

How do I install Dma Attack Techniques in Codex?

Run `npx skills add gmh5225/awesome-game-security --skill dma-attack-techniques -a codex`. Or copy the skill folder (.claude/skills/dma-attack in gmh5225/awesome-game-security) into .agents/skills/dma-attack-techniques in your project. Codex loads it when a task matches its description.

Can I use Dma Attack Techniques in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add gmh5225/awesome-game-security --skill dma-attack-techniques -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/dma-attack-techniques, .gemini/skills/dma-attack-techniques, .github/skills/dma-attack-techniques and .opencode/skills/dma-attack-techniques in your project.

What does Dma Attack Techniques need to run?

SKILL.md names no scripts, command-line tools or credentials: Dma Attack Techniques is instructions for the agent only.

Does Dma Attack Techniques access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Dma Attack Techniques safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Dma Attack Techniques use?

Dma Attack Techniques is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Dma Attack Techniques use?

About 415 tokens (SKILL.md is roughly 1.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 27k tokens, read only when the agent opens those files.

What are the alternatives to Dma Attack Techniques?

Skills that share tags, products or a category with Dma Attack Techniques: Implementing Threat Modeling With Mitre Attack (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Mapping Mitre Attack Techniques (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Performing Threat Modeling With Owasp Threat Dragon (mukul975/Anthropic-Cybersecurity-Skills, 34k stars) and Harness Threat Model (ruvnet/ruflo, 74k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Dma Attack Techniques?

gmh5225 (a GitHub user) maintains it in gmh5225/awesome-game-security, which has 3,584 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on October 9, 2026.

Source: gmh5225/awesome-game-security on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.