skills/mukul975/anthropic-cybersecurity-skills/performing-static-malware-analysis-with-pe-studio/Snyk
performing-static-malware-analysis-with-pe-studio
Warn
Audited by Snyk on Apr 7, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The skill's workflow explicitly instructs querying VirusTotal (see SKILL.md Step 1 curl example and the prerequisites "Access to VirusTotal API for hash lookups and community intelligence"), which ingests third‑party/community data that the agent is expected to read and use to inform triage decisions, so untrusted external content can materially influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata