business-logic-vulnerabilities

Fail

Audited by Socket on Jul 21, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as an offensive business-logic testing guide, but its actual purpose is to enable exploitation techniques against web applications. There is little supply-chain or credential-harvesting evidence, yet the offensive security capability alone makes it high risk for an AI agent.

Confidence: 91%Severity: 78%
MalwareHIGH
SCENARIOS.md

This is not a dependency/library implementation; it is an exploit-and-payload playbook containing actionable techniques to achieve OS command execution (DDE + web shell with `system($_GET...)`), file system compromise (path traversal to write `shell.php`), and data exfiltration (blind XXE OOB and JSONP/`sendBeacon`). If this content appeared inside a package, it would be a severe supply-chain maliciousness indicator. No benign library functionality is evidenced in the provided fragment.

Confidence: 43%Severity: 95%
Audit Metadata
Analyzed At
Jul 21, 2026, 01:25 PM
Package URL
pkg:socket/skills-sh/strivepan-svg%2Fhack-skills%2Fbusiness-logic-vulnerabilities%2F@d4cd02d077c5781633f518a9558ea8b6054eb90d33ff8568da9fa3689e92d48b
Security Audit — socket — business-logic-vulnerabilities