burp-suite-testing

Fail

Audited by Snyk on Jul 31, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 0.90). The document is a dual-use, high-risk offensive testing guide: it contains explicit, actionable instructions and payloads for intercepting/modifying traffic, exploiting SQLi/XSS/command-injection/path-traversal, and automating credential brute-force and data extraction, which can be directly abused for unauthorized data exfiltration and account compromise despite the stated authorization guard.

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (medium risk: 0.60). The skill explicitly instructs installing the Burp CA into the browser/system trusted roots (modifying the system trust store, which can require elevated privileges and changes machine security state).

Issues (2)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 31, 2026, 02:44 PM
Issues
2
Security Audit — snyk — burp-suite-testing