stack-exploitation-dev

Warn

Audited by Socket on Sep 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The supply-chain finding is not substantiated, and the skill shows no credential theft, exfiltration, or deceptive install flow. However, the skill is explicitly an offensive exploitation playbook for AI agents, enabling mitigation-aware exploit development against real targets; that makes it high security risk despite low evidence of malware.

Confidence: 93%Severity: 74%
Audit Metadata
Analyzed At
Sep 5, 2026, 10:41 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Fstack-exploitation-dev%2F@a542d175b70d1fe4af79d91a6cdcf69e8c7fa03357d98aa0b2c9e5974db5508b
Security Audit — socket — stack-exploitation-dev