Home / index-login / mobilere-skill · .kilo/skill/rev-struct/SKILL.md · GitHub

rev-struct skillA

rev-struct is agent-read markdown (skill) from index-login/mobilere-skill: Reconstruct data structures by analyzing memory access patterns across functions.

Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.

What the file says

# rev-struct - Structure Recovery

Recover data structure definitions by analyzing memory access patterns in functions and their call chains.

> Adapted from P4nda0s/reverse-skills (MIT) for the Ghidra MCP toolchain (upstream targets IDA; the analysis methodology is unchanged).

## Pre-check

This skill operates on decompiled native code. In this agent the toolchain is **Ghidra MCP** (`ghidra_*` tools):

1. Target .so not yet imported → `adb pull` it from the device, then `ghidra_import_file` (ELF auto-detects; explicit IDs: ARM64 `AARCH64:LE:64:v8A`, ARM32 `ARM:LE:32:v7`).
2. Query the loaded instance through Ghidra MCP: decompile functions by address/name, get callers/callees, inspect data types.
3. Exact tool names depend on the loaded tool groups — list or search them with `ghidra_list_tool_groups` / `ghidra_search_tools` when unsure.

If no Ghidra instance is connected, check `ghidra_list_instances` and connect with `ghidra_connect_instance`, or ask the user to start one.

## Structure Recovery Steps

### Step 1: Read Target Function

1. Decompile the function at the user-provided address/name via Ghidra MCP
2. Note its callers and callees (cross-references)
…

Read the whole file at its exact version.

How to install

Latest version
mdr add index-login/mobilere-skill/rev-struct@git:20260923.11daeaa
Exact content
mdr add index-login/mobilere-skill/rev-struct@sha256:aa374509ee7e3c4f

Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.

Badge

mdr badge

[![mdr](https://markdownregistry.com/badge/art_l5tzcc6zlxnkvp2g.svg)](https://markdownregistry.com/a/art_l5tzcc6zlxnkvp2g)

1 badge views in 30 days

Versions

versioncommittedcommitsizeaudit
git:20260923.11daeaa latest2026-09-23 11daeaa 5,236 BA view · diff
git:20260921.c8d1b942026-09-21 c8d1b94 5,052 BA view

Audit of the latest version

A  17 of 17 checks passed. Deterministic, no model, same answer every run.
  • pass: Frontmatter block present
  • pass: Frontmatter declares a name
  • pass: Frontmatter declares a description
  • pass: Size between 200 bytes and 200 KB (5236 bytes)
  • pass: No zero-width or bidi control characters
  • pass: No instruction hidden inside an HTML comment
  • pass: No link to an exfiltration or paste host
  • pass: No credential-shaped string
  • pass: No instruction to send local credentials anywhere
  • pass: No text hidden with inline styles
  • pass: No prompt-injection phrasing
  • pass: No curl or wget piped into a shell
  • pass: No recursive delete of root, home or parent
  • pass: No instruction to read or print local credentials
  • pass: No base64 blob over 200 characters
  • pass: No link to a raw IP address
  • pass: No script tag

Source

GitHub

index-login/mobilere-skill · 54 stars · license MIT · pushed 2026-09-24 · branch main

API

GET https://markdownregistry.com/api/v1/artifacts/art_l5tzcc6zlxnkvp2g
GET https://markdownregistry.com/api/v1/resolve?ref=index-login/mobilere-skill/rev-struct
GET https://markdownregistry.com/api/v1/blob/aa374509ee7e3c4f0b51980058aa7bfec0696885a5bc8a82aed2d732ab7ca24a

Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.

More from index-login/mobilere-skill

frida-mobile-security skill
index-login/mobilere-skill · .kilo/skill/frida-mobile-security/SKILL.md · 用于 Android/iOS 移动应用安全逆向分析:Frida 动态插桩、绕过反调试/反注入/加固壳、脱壳、加密与 native SO 层 hook、运行时行为分析、jadx-mcp 静态攻击面分析、离线 SO 静态分析(ELF…
git:20260924.aeb9e2f · audit A · 54 stars
karpathy-guidelines skill
index-login/mobilere-skill · .kilo/skill/karpathy-guidelines/SKILL.md · 减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。
git:20260803.71f8be9 · audit A · 54 stars
rev-dex-dumper skill
index-login/mobilere-skill · .kilo/skill/rev-dex-dumper/SKILL.md · Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug…
git:20260923.11daeaa · audit A · 54 stars
rev-symbol skill
index-login/mobilere-skill · .kilo/skill/rev-symbol/SKILL.md · Restore function symbols by analyzing code patterns, strings, constants, and cross-references
git:20260924.aeb9e2f · audit A · 54 stars
rev-unicorn-debug skill
index-login/mobilere-skill · .kilo/skill/rev-unicorn-debug/SKILL.md · Debug and emulate specific code fragments or functions using the Unicorn engine. Activate when the user wants to…
git:20260924.aeb9e2f · audit A · 54 stars
AGENTS.md agents
index-login/mobilere-skill · AGENTS.md
git:20260924.aeb9e2f · audit A · 54 stars

Every file in index-login/mobilere-skill

Browse by kind, by grade A, or by owner.