Home / index-login / mobilere-skill · .kilo/skill/frida-mobile-security/SKILL.md · GitHub

frida-mobile-security skillA

frida-mobile-security is agent-read markdown (skill) from index-login/mobilere-skill: 用于 Android/iOS 移动应用安全逆向分析:Frida 动态插桩、绕过反调试/反注入/加固壳、脱壳、加密与 native SO 层 hook、运行时行为分析、jadx-mcp 静态攻击面分析、离线 SO 静态分析(ELF 侦察/字符串/交叉引用/反汇编/JNI 判型)。用户提到"绕过检测/闪退/脱壳/加密/抓包/行为摸底/内存扫描/分析 so/ELF 侦察/快速反汇编/JNI/检查证书"等意图时使用。.

Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.

What the file says

# Frida Mobile Security — 逆向分析总控

**模块优先,决策树驱动。** 本文件是总控:任务路由 + 决策树导航 + 模块目录。各技巧域的详细打法在项目根 `references/` 分域文件(全量索引 `references/_index.md`),按需读取。

> 路径基准:`references/*` 相对项目根;`scripts/*` 相对本文件所在目录(`.kilo/skill/frida-mobile-security/`)。**给用户的 frida CLI 命令必须写全路径**(如 `-l .kilo/skill/frida-mobile-security/scripts/core/utils.js`),或让用户先 `cd .kilo/skill/frida-mobile-security`;`tools/frida_run.py -l scripts/...` 短路径自动解析(实测:短路径直接跑 frida CLI 会 `Errno 2`)。

**硬性规则:`scripts/core/utils.js` 必须作为第一个 `-l` 参数加载。**

---

## 快速命令卡片

```bash
# 从项目根执行:先 cd .kilo/skill/frida-mobile-security,或把 scripts/ 展开为 .kilo/skill/frida-mobile-security/scripts/
# 例:frida -U -f com.app -l .kilo/skill/frida-mobile-security/scripts/core/utils.js -l .kilo/skill/frida-mobile-security/scripts/monitors/crypto_monitor.js

# 加解密自吐
frida -U -f com.app -l scripts/core/utils.js -l scripts/monitors/crypto_monitor.js

# 行为摸底
frida -U -f com.app -l scripts/core/utils.js -l scripts/monitors/file_monitor.js -l scripts/monitors/network_monitor.js -l scripts/monitors/thread_monitor.js

# 反检测 Phase 1 (保活 + 定位检测 so)
frida -U -f com.app -l scripts/core/utils.js -l scripts/bypass/exit_blocker.js -l scripts/bypass/so_loader_tracer.js
…

Read the whole file at its exact version.

How to install

Latest version
mdr add index-login/mobilere-skill/frida-mobile-security@git:20260924.aeb9e2f
Exact content
mdr add index-login/mobilere-skill/frida-mobile-security@sha256:56c1f7c90bb991d4

Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.

Badge

mdr badge

[![mdr](https://markdownregistry.com/badge/art_xeuxdan7b5wg5ehc.svg)](https://markdownregistry.com/a/art_xeuxdan7b5wg5ehc)

1 badge views in 30 days

Versions

versioncommittedcommitsizeaudit
git:20260924.aeb9e2f latest2026-09-24 aeb9e2f 16,154 BA view · diff
git:20260923.f751cce2026-09-23 f751cce 16,813 BA view · diff
git:20260923.11daeaa2026-09-23 11daeaa 16,181 BA view · diff
git:20260921.c8d1b942026-09-21 c8d1b94 12,767 BA view · diff
git:20260804.8e421942026-08-04 8e42194 11,627 BA view · diff
git:20260803.71f8be92026-08-03 71f8be9 34,665 BC view

Audit of the latest version

A  17 of 17 checks passed. Deterministic, no model, same answer every run.
  • pass: Frontmatter block present
  • pass: Frontmatter declares a name
  • pass: Frontmatter declares a description
  • pass: Size between 200 bytes and 200 KB (16154 bytes)
  • pass: No zero-width or bidi control characters
  • pass: No instruction hidden inside an HTML comment
  • pass: No link to an exfiltration or paste host
  • pass: No credential-shaped string
  • pass: No instruction to send local credentials anywhere
  • pass: No text hidden with inline styles
  • pass: No prompt-injection phrasing
  • pass: No curl or wget piped into a shell
  • pass: No recursive delete of root, home or parent
  • pass: No instruction to read or print local credentials
  • pass: No base64 blob over 200 characters
  • pass: No link to a raw IP address
  • pass: No script tag

Source

GitHub

index-login/mobilere-skill · 54 stars · license MIT · pushed 2026-09-24 · branch main

API

GET https://markdownregistry.com/api/v1/artifacts/art_xeuxdan7b5wg5ehc
GET https://markdownregistry.com/api/v1/resolve?ref=index-login/mobilere-skill/frida-mobile-security
GET https://markdownregistry.com/api/v1/blob/56c1f7c90bb991d4d27d77b0b47daccbfba3b37895fa9c098d7207e774b379fb

Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.

More from index-login/mobilere-skill

karpathy-guidelines skill
index-login/mobilere-skill · .kilo/skill/karpathy-guidelines/SKILL.md · 减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。
git:20260803.71f8be9 · audit A · 54 stars
rev-dex-dumper skill
index-login/mobilere-skill · .kilo/skill/rev-dex-dumper/SKILL.md · Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug…
git:20260923.11daeaa · audit A · 54 stars
rev-struct skill
index-login/mobilere-skill · .kilo/skill/rev-struct/SKILL.md · Reconstruct data structures by analyzing memory access patterns across functions
git:20260923.11daeaa · audit A · 54 stars
rev-symbol skill
index-login/mobilere-skill · .kilo/skill/rev-symbol/SKILL.md · Restore function symbols by analyzing code patterns, strings, constants, and cross-references
git:20260924.aeb9e2f · audit A · 54 stars
rev-unicorn-debug skill
index-login/mobilere-skill · .kilo/skill/rev-unicorn-debug/SKILL.md · Debug and emulate specific code fragments or functions using the Unicorn engine. Activate when the user wants to…
git:20260924.aeb9e2f · audit A · 54 stars
AGENTS.md agents
index-login/mobilere-skill · AGENTS.md
git:20260924.aeb9e2f · audit A · 54 stars

Every file in index-login/mobilere-skill

Browse by kind, by grade A, or by owner.