flstudio-scripting
Fail
Audited by Socket on Sep 15, 2026
2 alerts found:
Obfuscated FileSecurityObfuscated FileTONGS/objects/fe/519a3e449f9faed39a72dccd9965c48e7ec176
HIGHObfuscated FileHIGH
TONGS/objects/fe/519a3e449f9faed39a72dccd9965c48e7ec176
No direct malicious behavior can be established from this opaque or potentially corrupted binary fragment. It cannot be safely classified without the original file bytes, encoding, file type, or the code that loads and uses it. Treat the artifact as untrusted until it is identified and analyzed in its original form.
Confidence: 90%
SecurityTONGS/hooks/pre-receive.sample
MEDIUMSecurityMEDIUM
TONGS/hooks/pre-receive.sample
This is a standard example Git pre-receive hook, not apparent malware. However, its eval statement unsafely reparses client-controlled push-option data and can permit arbitrary command execution in the server-side Git hook context. The hook should not be deployed unchanged in an untrusted repository service; replace eval with a safe variable lookup mechanism.
Confidence: 98%Severity: 82%
Audit Metadata