Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
firmware-reverse-engineering — Agent skills for firmware extraction, static analysis, Ghidra reverse engineering, emulation, and security reporting, packaged for Claude Code and Codex. | Kitploit
Tools/GitHubGitHub/orbitcurve/firmware-reverse-engineering
Embedded Systems SecurityStatic AnalysisDynamic Analysis (Sandboxing)Reverse EngineeringBinary AnalysisLearning & EducationCurated ResourcesFirmware Analysis

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
GitHuborbitcurve/firmware-reverse-engineering

firmware-reverse-engineering

Agent skills for firmware extraction, static analysis, Ghidra reverse engineering, emulation, and security reporting, packaged for Claude Code and Codex.

View Repository
209249021 days agoReviewed by Kitploit

Firmware Reverse Engineering Skills

Five agent skills from OrbitCurve for firmware extraction, static analysis, Ghidra reverse engineering, emulation, and security reporting, by Hussein Muhaisen.

The collection packages the existing workflows, references, templates, and Ghidra scripts for Claude Code and Codex. Installing it makes the instructions available to your agent; install the analysis tools separately.

Validation: Claude Code and Codex packaging/discovery checks, Ghidra script regressions, and selected extraction/reporting checks are included. See tested versions and limitations. Firmware emulation remains target-specific.

Skills

SkillPurpose
firmware-extractionExtract with unblob, summarize its JSON report, and investigate unresolved regions.
firmware-static-analysisInspect ELF architecture, metadata, strings, symbols, and binary structure.
ghidra-reAnalyze firmware binaries with Ghidra and bundled analysis scripts.
firmware-emulationWork with QEMU, GDB, network analysis, Firmadyne, and FirmAE.
firmware-security-reportsTurn assessment evidence into findings, working notes, and reports.

Install

To test a local checkout, see local testing.

Claude Code

In Claude Code:

root@kitploit:~
/plugin marketplace add OrbitCurve/firmware-reverse-engineering
/plugin install firmware-reverse-engineering@firmware-reverse-engineering

Invoke a skill with its plugin namespace:

root@kitploit:~
/firmware-reverse-engineering:firmware-static-analysis

Then provide the binary path and your analysis goal. The agent can also select skills from their descriptions.

Codex

In your terminal:

root@kitploit:~
codex plugin marketplace add OrbitCurve/firmware-reverse-engineering
codex plugin add firmware-reverse-engineering@firmware-reverse-engineering

Use /skills in Codex to find the installed skills, or mention one in a prompt:

root@kitploit:~
$firmware-reverse-engineering:firmware-static-analysis Inspect ./samples/busybox and report its architecture, imports, and protections.

Other agents and standalone installation

For agents supported by the skills CLI, list the available skills, then select your agent interactively:

root@kitploit:~
npx skills add OrbitCurve/firmware-reverse-engineering --list
npx skills add OrbitCurve/firmware-reverse-engineering

This installs skill directories rather than a full plugin. Keep each directory's references/, assets/, and scripts/ beside its SKILL.md. Avoid installing the same collection through both routes in the same agent.

For manual installation paths, updates, removal, and tool requirements, see docs/compatibility.md.

Repository layout

The old top-level skill directories have moved under the plugin. Update any local symlinks or installation paths that pointed at the old layout.

Contributing

See CONTRIBUTING.md. Changes to skill instructions, reference material, templates, and analysis scripts require explicit maintainer approval.

License

Licensed under the Apache License 2.0. See NOTICE for attribution.

Download Tool
PathContents
.claude-plugin/marketplace.jsonClaude Code marketplace catalog.
.agents/plugins/marketplace.jsonCodex marketplace catalog.
plugins/firmware-reverse-engineering/One self-contained plugin with manifests for both hosts.
plugins/firmware-reverse-engineering/skills/Five skills with references, templates and four Ghidra scripts.
tools/ and tests/Packaging/runtime checks and an approved content baseline.
docs/Compatibility instructions and release findings.