Re Frida Script Author
dslsdzc/rev-skills
Frida 脚本生成方法论:目标特征 → 模板选择 → 改写 → 验证。独立于执行插桩(re-frida). An agent skill from dslsdzc/rev-skills.
当需要获取目标 APK、识别加固壳类型、脱壳还原 dex、反编译得到 Java/so/H5 全量源码产物,或 android-security-audit 需要可直接开挖的输入时调用。负责 APK → 全量可审计产物(壳识别 → 脱壳 → JADX 反编译 + apktool 资源 + so 提取 + H5/assets 提取)→ 标准目录交付。命中场景:JADX 打开是…
$ npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install zhaji2333/CkSKILLS apk-reversing --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/zhaji2333/CkSKILLS.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/apk-reversing .claude/skills/apk-reversing && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "apk-reversing" agent skill from https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversing into .claude/skills/apk-reversing/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apk-reversing", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversingType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install zhaji2333/CkSKILLS apk-reversing --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zhaji2333/CkSKILLS.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.agents/skills/apk-reversing .agents/skills/apk-reversing && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "apk-reversing" agent skill from https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversing into .agents/skills/apk-reversing/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apk-reversing", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install zhaji2333/CkSKILLS apk-reversing --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zhaji2333/CkSKILLS.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.agents/skills/apk-reversing .cursor/skills/apk-reversing && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "apk-reversing" agent skill from https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversing into .cursor/skills/apk-reversing/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apk-reversing", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/zhaji2333/CkSKILLS.git --path .agents/skills/apk-reversing--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install zhaji2333/CkSKILLS apk-reversing --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zhaji2333/CkSKILLS.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.agents/skills/apk-reversing .gemini/skills/apk-reversing && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "apk-reversing" agent skill from https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversing into .gemini/skills/apk-reversing/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apk-reversing", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install zhaji2333/CkSKILLS apk-reversingInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/zhaji2333/CkSKILLS.git skills-src && mkdir -p .github/skills && cp -r skills-src/.agents/skills/apk-reversing .github/skills/apk-reversing && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "apk-reversing" agent skill from https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversing into .github/skills/apk-reversing/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apk-reversing", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install zhaji2333/CkSKILLS apk-reversing --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/zhaji2333/CkSKILLS.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.agents/skills/apk-reversing .opencode/skills/apk-reversing && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "apk-reversing" agent skill from https://github.com/zhaji2333/CkSKILLS/tree/main/.agents/skills/apk-reversing into .opencode/skills/apk-reversing/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apk-reversing", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
apk-reversing当需要获取目标 APK、识别加固壳类型、脱壳还原 dex、反编译得到 Java/so/H5 全量源码产物,或 android-security-audit 需要可直接开挖的输入时调用。负责 APK → 全量可审计产物(壳识别 → 脱壳 → JADX 反编译 + apktool 资源 + so 提取 + H5/assets 提取)→ 标准目录交付。命中场景:JADX 打开是…
Apk Reversing is an agent skill from zhaji2333/CkSKILLS. 当需要获取目标 APK、识别加固壳类型、脱壳还原 dex、反编译得到 Java/so/H5 全量源码产物,或 android-security-audit 需要可直接开挖的输入时调用。负责 APK → 全量可审计产物(壳识别 → 脱壳 → JADX 反编译 + apktool 资源 + so 提取 + H5/assets 提取)→ 标准目录交付。命中场景:JADX 打开是 stub/空壳、入口类是 com.stub.StubApp、lib 下只有壳 so、需要还原真实代码后再挖洞。
Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Mobile application security. It works with Java, Frida and Ghidra. The repository describes itself as: 基于 Claude Code / Codex 的 SRC 漏洞挖掘 Agent 技能体系 —— 将顶尖安全研究员的方法论沉淀为可调度、可复用的 Skill 知识资产。 The licence is MIT.
Read from SKILL.md and the folder at commit 482fe78. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
adbclaudebrewFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Apk Reversing loads about 1.7k tokens when it runs. Until then it costs about 64 tokens; SKILL.md has 393 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from zhaji2333/CkSKILLS at commit 482fe78, republished under its MIT licence (© zhaji2333). 393 words, ~1,720 tokens.
.claude/skills/apk-reversing/SKILL.md (or your agent's skills folder).定位:这是
android-security-audit的上游准备技能——把 APK 变成"可挖的全量源码",交付标准目录后android-security-audit直接开挖(密钥追踪/组件安全)。本技能只负责还原,不挖洞;漏洞挖掘见android-security-audit。只有 APK 有加固壳时才必须完整走本技能;无壳 APK 直接 JADX 反编译即可开工。
快筛前置(省时):无壳大包(>100MB)可先用
asc-fast-hunt秒级快筛(Manifest 组件面 + 密钥/签名/接口定位),确认值得深挖再付全量反编译成本;已知有壳则直接走本技能——壳包的 DEX 里只有 stub,用 ASC 搜不出东西属正常现象,不要误判为"没有密钥"。
com.stub.StubApp / com.secneo.apkwrapper 等加固特征类lib/ 下只有壳 so(libshella、libjiagu、libSecShell 等)android-security-audit 准备标准输入(jadx_out/ + apktool_out/ + lib/ + assets/)asc-fast-hunt(秒级定位密钥/接口)reversing/<package>/
├── jadx_out/ # Java 源码(JADX 反编译,必须是真实代码而非 stub)
├── apktool_out/ # smali + 资源 + AndroidManifest(apktool)
├── dex/ # 脱壳后的 dex(未合并进 jadx 时单独留档)
├── lib/ # 全部 so(arm64-v8a 优先,可 IDA/Ghidra 打开)
├── assets/ # H5/JS/证书/密钥/配置等资源
├── origin.apk # 原始 APK 存档
└── report.md # 壳类型 / 脱壳方式 / 产物清单 / 未还原项交付检查:jadx_out 里能 grep 到真实特征串(appKey/secret/接口域名)、lib/ 的 so 可被 IDA/Ghidra 打开搜导出表、assets/ 的 H5 完整——满足即交付 android-security-audit。
# 已安装设备上提取
adb shell pm list packages | grep <关键词> # 找包名
adb shell pm path <package> # 拿到 APK 路径
adb pull <路径> origin.apk # 拉取
# 模拟器/真机均可;也可应用商店、官网、第三方平台、抓包拦截下载地址快速判断:
# 1. 解压看 lib 与入口
unzip -l origin.apk | grep -iE "\.so$|stub|wrapper"
# 2. JADX 打开看 Application/入口类
jadx -d /tmp/quick origin.apk && grep -rn "StubApp\|class.*Application" /tmp/quick/sources/常见壳特征表:
| 加固 | 特征(lib/入口类) | 脱壳方式 |
|---|---|---|
| 腾讯乐固 | libshella-*.so / libtprt.so / com.stub.StubApp | frida-dexdump / 模拟器运行 dump |
| 梆梆 | libSecShell.so / SecShell | frida-dexdump / 反射大师 |
| 爱加密 | libexec.so / libexecmain.so / com.secneo.apkwrapper | frida-dexdump |
| 360 | libjiagu.so / libjiagu_x86.so | 360 脱壳 / 反射大师 |
| 娜迦/顶象 | libchaosvmp.so / libddog.so | 内存 dump + dex 修复 |
| 腾讯御安全/其他 | libtosprotection.so 等 | frida-dexdump / 运行 dump |
| DCloud uni-app | 无壳 so,assets/apps/<appid>/www/ | 无需脱壳,直接提取 www/ 即前端源码 |
关键判断:JADX 打开后全是 stub 包装类 = 有壳,必须脱壳;能直接看到业务类 = 无壳,跳过脱壳直接反编译。
# 1. 准备 root 模拟器(MuMu/夜神/雷电)并安装 frida-server(架构匹配)
adb push frida-server /data/local/tmp/
adb shell "chmod 755 /data/local/tmp/frida-server && /data/local/tmp/frida-server &"
# 2. 安装目标 App 并启动(dex 解密加载后才能 dump)
adb install origin.apk
# 3. dump 内存中的 dex
frida-dexdump -U -f <package> -o dex/
# 4. 或 frida-unpack 脚本(hook DEX 加载点,dump 更全)adb backup -f app.ab <package> 提取(API 23- 适用)# DCloud uni-app:assets/apps/<appid>/www/ 直接是前端源码
unzip -o origin.apk -d apktool_out && ls apktool_out/assets/apps/*/www/
# 微信小程序内嵌:见 miniprogram-security# JADX(无壳:直接反编译 APK;有壳:反编译脱壳后的 dex)
jadx -d jadx_out origin.apk
# 或
jadx -d jadx_out dex/
# apktool(Manifest / smali / 资源 / lib)
apktool d origin.apk -o apktool_out
# so 提取(apktool_out/lib/ 或直接解压)
cp -r apktool_out/lib lib/
# H5/assets 提取
cp -r apktool_out/assets assets/lib/arm64-v8a/ 优先;Ghidra + GhidraMCP 静态优先(list_functions 定位 JNI 导出 → decompile_function 拿伪 C),Radare2(izz/afl)做轻量侦察;导出表搜 Java_ 前缀(静态注册)或 JNI_OnLoad/RegisterNatives(动态注册)——对应 android-security-audit 一、1.3 SO 层追踪assets/ 下 HTML/JS 搜加密库(JSEncrypt/CryptoJS)与密钥常量;动态加载的远程 H5 记录加载 URL——对应 android-security-audit 一、1.4 H5/JS 层追踪META-INF/*.RSA、res/raw/ 下的证书与密钥,供重打包/校验分析目标:让 Agent 能自主驱动 Ghidra 分析 .so(定位 JNI 导出 → 反编译伪 C → 读算法重写)。GhidraMCP 操作的是"已导入并分析完的程序",所以 .so 必须先导入 Ghidra 并跑完自动分析。
brew install --cask ghidra 或官网下载File → Install Extensions 安装 → 重启 GhidraWindow → Script Manager 运行 ghidra_mcp.py → 起本地 HTTP MCP server(默认端口 8192,SSE 端点;端口/工具名以仓库 README 为准)方式 A(GUI 手动):File → New Project 建工程 → File → Import File 选 libxxx.so → Import → 勾选 Auto Analysis → 等分析跑完
方式 B(命令行,Agent 可代劳):
# 建工程 + 导入 + 自动分析(一次完成)
analyzeHeadless /tmp/ghidra_proj proj -import lib/arm64-v8a/libxxx.so -overwrite
# 之后 GUI `File → Open Project` 打开该工程,GhidraMCP 即挂到已分析程序上# Claude Code 示例
claude mcp add ghidra -sse http://localhost:8192/mcp
# Codex 等其他框架按各自 MCP 配置方式指向同一端点1. list_functions → 定位 JNI 导出(Java_ 前缀 / JNI_OnLoad)
2. get_function_by_name <签名函数>
3. decompile_function → 拿伪 C → 识别算法(MD5/SHA/AES)与拼接顺序 → Python 重写
4. get_strings → 提取硬编码密钥/常量线索
5. 伪 C 读不动(ollvm/VMP/字符串加密)→ 记录"需动态路径",回落 android-security-audit 1.3 抓包兜底arm64-v8a 原生支持;x86/x86_64 模拟器 so 也可分析apk-reversing 产物 lib/arm64-v8a/),不是整个 APKizz/afl/pdf)做轻量无头侦察作为降级grep -rniE "appKey|secret|sign|接口域名" jadx_out/sources/ 有结果lib/arm64-v8a/ 下 so 齐全,IDA 可打开、导出表可搜android-security-audit 后,其快速开始 Step 2 的 grep 应能直接命中windows-reverse-engineering 思路分析壳 soandroid-security-audit + reportandroid-security-audit(密钥追踪→未授权接口 / 组件安全)asc-fast-hunt(大包秒级定位密钥/签名/接口,决定是否值得全量还原;脱壳后的 dex 打包成 zip 也能回它检索)miniprogram-securityrecon-js-analysisreport© zhaji2333, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .agents/skills/apk-reversing of zhaji2333/CkSKILLS.
Open the folder on GitHubat commit 482fe78
Apk Reversing next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Apk Reversing this skillzhaji2333/CkSKILLS | 115 | — | ~1.7k | Automated safety check: Pass | MIT | |
| Re Frida Script Authordslsdzc/rev-skills | 135 | — | ~1.2k | Automated safety check: Pass | Apache-2.0 | |
| Frida Mobile Securityindex-login/MobileRE-Skill | 158 | — | ~3k | Automated safety check: Pass | MIT | |
| Mira Risk Collectvw2x/Mira | 105 | — | ~793 | Automated safety check: Pass | GPL-3.0 | |
| Rev Unicorn Debugindex-login/MobileRE-Skill | 158 | — | ~1.9k | Automated safety check: Pass | MIT | |
| Mira Article Updatervw2x/Mira | 105 | — | ~637 | Automated safety check: Pass | GPL-3.0 |
dslsdzc/rev-skills
Frida 脚本生成方法论:目标特征 → 模板选择 → 改写 → 验证。独立于执行插桩(re-frida). An agent skill from dslsdzc/rev-skills.
index-login/MobileRE-Skill
用于 Android/iOS 移动应用安全逆向分析:Frida 动态插桩、绕过反调试/反注入/加固壳、脱壳、加密与 native SO 层 hook、运行时行为分析、jadx-mcp 静态攻击面分析、离线 SO 静态分析(ELF 侦察/字符串/交叉引用/反汇编/JNI 判型)。用户提到"绕过检测/闪退/脱壳/加密/抓包/行为摸底/内存扫描/分析 so/ELF…
vw2x/Mira
Run Mira environment risk collection. An agent skill from vw2x/Mira.
index-login/MobileRE-Skill
Debug and emulate specific code fragments or functions using the Unicorn engine.
vw2x/Mira
Update Mira topic articles from cases and patterns. An agent skill from vw2x/Mira.
index-login/MobileRE-Skill
Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug; invisible to Frida checks), twin tools cross-check each other.
zhaji2333/CkSKILLS
当需要在不对 APK 全量反编译的前提下秒级定位硬编码密钥/签名函数/隐藏接口/调试后门,或 APK 过大(100MB)JADX 全量反编译过慢、内存吃紧,或脱壳产物(裸 dex)需要快速检索,或只想先读一下 Manifest 组件面/权限清单时调用。负责基于 Droid ASC 的零预处理快速定位(findrefs 全局交叉引用搜索 + getclass 按需反编译 + Manifest…
zhaji2333/CkSKILLS
当目标存在支付/下单/退款/提现/转账/优惠券/积分/红包/会员/订阅/审批/库存/抽奖等业务功能,或发现状态可跳变、金额参数可控、并发可重放时调用。负责业务状态机建模、金额篡改、订单状态跳变、竞态条件与重放攻击深度挖掘。
zhaji2333/CkSKILLS
当目标为 LLM 应用/Chatbot/智能客服/AI 助手/Copilot/Agent/RAG 知识库/多模态模型,或发现用户输入进入大模型提示、工具调用、知识库检索、对话记忆、文件解析,或需要测试提示词注入/越狱逃逸/System Prompt 泄露/训练数据与敏感信息泄露/RAG 检索污染/Agent 记忆污染/工具滥用与命令执行/SSRF/沙箱逃逸时调用。负责 OWASP LLM…
zhaji2333/CkSKILLS
当开始挖新目标、换会话/压缩后续挖、用户说线索板/写板/读板/建板,或信息收集、反编译、JS/接口线索需要跨轮保留时调用。负责为当前系统维护一份 Markdown 线索板(读→挖→写回),不负责拆 webpack、打越权或成稿。模板见同目录 CLUEBOARD.template.md。
zhaji2333/CkSKILLS
当目标涉及云资产(对象存储/云元数据/Serverless)、容器/K8s、运维面板(宝塔/Grafana/Zabbix/Jenkins/GitLab/Nacos等)、消息队列/缓存中间件、CI/CD流水线、第三方回调集成、依赖组件CVE、信息泄露配置时调用。负责未授权访问、弱口令、云配置错误、供应链漏洞与敏感信息挖掘。
zhaji2333/CkSKILLS
当发现参数拼接SQL、动态排序/筛选、JSON查询条件可控、模板渲染、命令执行点、搜索/统计/自动补全接口时调用,进行SQL/NoSQL/命令/SSTI/表达式注入的深度挖掘。命中场景:搜索框、排序参数、登录绕过、导出条件、文件名参数、模板/报表生成、爬虫URL参数。
Categories
当需要获取目标 APK、识别加固壳类型、脱壳还原 dex、反编译得到 Java/so/H5 全量源码产物,或 android-security-audit 需要可直接开挖的输入时调用。负责 APK → 全量可审计产物(壳识别 → 脱壳 → JADX 反编译 + apktool 资源 + so 提取 + H5/assets 提取)→ 标准目录交付。命中场景:JADX 打开是…. Apk Reversing is an agent skill from zhaji2333/CkSKILLS.
Apk Reversing fits situations like: tasks that involve Mobile application security.
Run `npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a claude-code`. Or copy the skill folder (.agents/skills/apk-reversing in zhaji2333/CkSKILLS) into .claude/skills/apk-reversing in your project. Claude Code loads it when a task matches its description.
Run `npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a codex`. Or copy the skill folder (.agents/skills/apk-reversing in zhaji2333/CkSKILLS) into .agents/skills/apk-reversing in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add zhaji2333/CkSKILLS --skill apk-reversing -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/apk-reversing, .gemini/skills/apk-reversing, .github/skills/apk-reversing and .opencode/skills/apk-reversing in your project.
Going by SKILL.md and its folder, Apk Reversing needs the command-line tools its instructions call (adb, claude and brew). Our summary lists: Python 3.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Apk Reversing is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.7k tokens (SKILL.md is roughly 6.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Apk Reversing: Re Frida Script Author (dslsdzc/rev-skills, 135 stars), Frida Mobile Security (index-login/MobileRE-Skill, 158 stars), Mira Risk Collect (vw2x/Mira, 105 stars) and Rev Unicorn Debug (index-login/MobileRE-Skill, 158 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
zhaji2333 (a GitHub user) maintains it in zhaji2333/CkSKILLS, which has 115 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on September 15, 2026.
Source: zhaji2333/CkSKILLS on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.