web-deserialization
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally coherent as an insecure-deserialization exploitation guide, but its actual function is to help an AI agent generate and deliver RCE payloads against target systems. No clear credential harvesting or deceptive install path is present, and the .config finding is contextual, but the offensive-security purpose and OOB callback workflow make it high security risk.
Confidence: 91%Severity: 79%
Audit Metadata