What problem does it solve? IoT and embedded device security assessments require expertise spanning hardware debugging, firmware reverse engineering, wireless protocols, and cloud APIs, and this Skill consolidates that full methodology into one actionable workflow. ## Core Features & Use Cases - Hardware & Firmware Analysis: Identify SoCs and debug interfaces (UART, JTAG, SWD), dump SPI/eMMC flash, and extract filesystems with binwalk for credential and vulnerability discovery. - Runtime & Bootloader Attacks: Bypass U-Boot consoles, exploit web admin command injection, write to MTD partitions, and apply fault injection against secure boot. - Wireless & Cloud Testing: Attack BLE, Zigbee, Z-Wave, LoRaWAN, Modbus, MQTT, and companion mobile apps or cloud APIs including IDOR and device-claim flaws. - Use Case: During a smart-home pentest, use this Skill to dump a camera's SPI flash, extract hardcoded credentials, intercept its OTA update traffic, and test the vendor cloud API for device-takeover vulnerabilities. ## Quick Start Use the offensive-iot skill to plan a security assessment of an embedded Linux device starting from hardware reconnaissance through firmware analysis.