heap-exploitation-dev

Warn

Audited by Socket on Sep 5, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent and not deceptive, but it is an offensive security/exploit-development skill for an AI agent. There are no installs, credentials, or exfiltration paths, so malware risk is low; overall risk is high because it equips the agent to develop heap exploitation chains.

Confidence: 94%Severity: 78%
AnomalyLOW
references/glibc-techniques.md

No direct malware execution, I/O, or data-flow behavior is present in this excerpt because it is purely exploit-technique documentation. Nonetheless, the content is highly offensive and specific to modern glibc heap exploitation and FSOP/loader endgames, which is a meaningful supply-chain risk signal: treat the package as potentially attack-tooling-oriented and review surrounding files for actual runtime code (networking, command execution, persistence, or data theft).

Confidence: 62%Severity: 55%
Audit Metadata
Analyzed At
Sep 5, 2026, 10:40 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Fheap-exploitation-dev%2F@09bd01010a8baaa27f02bda784904ec4c6665a8cac2beda39739396f96fb3721
Security Audit — socket — heap-exploitation-dev