universal-reverse-engineer

Fail

Audited by Socket on Jun 16, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md
MalwareHIGH
references/anti-re-bypass.md

This fragment is high-risk supply-chain content: it is an actionable anti-analysis/anti-debugging and evasion reference with concrete hooking and LD_PRELOAD interposition examples that tamper with debugger/DBI/VM detection signals (including rewriting /proc outputs and forcing anti-debug decisions). While the snippet does not itself show malware execution, exfiltration, or persistence, its purpose and included tradecraft strongly suggest misuse potential as stealth/evasion tooling. Treat as suspicious and investigate whether it is actually packaged for execution vs. merely present as documentation; if distributed in a production dependency, it warrants removal or strict justification/permissions review.

Confidence: 60%Severity: 90%
Audit Metadata
Analyzed At
Jun 16, 2026, 03:18 PM
Package URL
pkg:socket/skills-sh/roman-ryzenadvanced%2Fai-crossplatform-skills%2Funiversal-reverse-engineer%2F@a1e1e617e662b233edb31ce772961df32be47d82c6df25258882eebaef66d456
Security Audit — socket — universal-reverse-engineer