offensive-tools/rev/jadx/SKILL.md
Auth/lab ref: Android Dex-to-Java decompiler with CLI and GUI support.
npx skillsauth add aeondave/malskill jadxInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Readable Android decompilation with both CLI and GUI workflows.
Use JADX when you want to:
Use apktool when you need to edit and rebuild the APK.
# CLI decompile to folder
jadx -d out app.apk
# Open GUI for interactive analysis
jadx-gui app.apk
# Export as Gradle-like project
jadx -e -d out app.apk
| Flag | Purpose |
|------|---------|
| -d, --output-dir | Write decompiled output to a directory |
| -e, --export-gradle | Export a Gradle-like project |
| --show-bad-code | Keep inconsistent code instead of hiding it |
| --deobf | Enable deobfuscation |
| --single-class | Decompile only one class |
| --single-class-output | Write single-class output to file or dir |
| --output-format json | Emit JSON instead of Java output |
| --cfg / --raw-cfg | Export control-flow graphs |
| -q / -v | Quiet or verbose logging |
jadx -d out app.apk
Then inspect:
sources/ for business logicresources/AndroidManifest.xmljadx-gui app.apk
Best for:
jadx --deobf --show-bad-code -d out app.apk
Use this when normal output hides code paths or when identifiers are too mangled.
jadx --single-class com.example.auth.LoginActivity app.apk
Useful when you already know the package/class name from logs, manifest, or previous triage.
jadx-gui first for orientation, then rerun CLI with focused flags for reproducible output.jadx to apktool or direct smali edits.apktool smali or another RE tool.No bundled scripts/, references/, or assets/.
Use the official README and wiki for plugin management, GUI-specific features, and advanced renaming options.
development
Auth/lab ref: Unicorn Engine CPU-only emulation for shellcode, decryptors, custom VM handlers, instruction tracing, memory hooks, and register-level experiments.
development
Auth/lab ref: Renode board and SoC simulation for MCU/RTOS firmware, UART/GPIO/peripheral modeling, GDB remote debugging, REPL platforms, and RESC scripts.
development
Auth/lab ref: Qiling OS-layer binary emulation for PE/ELF/Mach-O/UEFI/shellcode with rootfs, syscall/API hooks, filesystem mapping, and runtime patching.
databases
Auth/lab ref: QEMU user-mode and full-system emulation for cross-arch binaries, firmware, kernels, disks, serial consoles, networking, and GDB stubs.