heap-exploitation-dev
Audited by Socket on Sep 5, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS: the skill is internally coherent and not deceptive, but it is an offensive security/exploit-development skill for an AI agent. There are no installs, credentials, or exfiltration paths, so malware risk is low; overall risk is high because it equips the agent to develop heap exploitation chains.
No direct malware execution, I/O, or data-flow behavior is present in this excerpt because it is purely exploit-technique documentation. Nonetheless, the content is highly offensive and specific to modern glibc heap exploitation and FSOP/loader endgames, which is a meaningful supply-chain risk signal: treat the package as potentially attack-tooling-oriented and review surrounding files for actual runtime code (networking, command execution, persistence, or data theft).