cmd-injection

Warn

Audited by Socket on Sep 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its stated purpose is offensive command-injection exploitation, and the capabilities fully support exfiltration, file theft, and remote compromise. There is no strong evidence of hidden malware or installer abuse in the supplied text, but this is a high-risk exploit skill that materially enables harmful real-world actions by an AI agent.

Confidence: 95%Severity: 93%
Audit Metadata
Analyzed At
Sep 22, 2026, 05:37 PM
Package URL
pkg:socket/skills-sh/securityfortech%2Fhacking-skills%2Fcmd-injection%2F@b6cd4072b3f4ad555407bc3572d7673a926f2e47235a292f21541d0bdcca940d
Security Audit — socket — cmd-injection