http-host-header-attacks
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: internally coherent as a Host-header attack playbook, but it equips an AI agent with offensive security techniques, token-capture workflows, OAST routing, brute-force vhost discovery, and SSRF-style internal targeting. There is little supply-chain risk, but the operational security risk is high because the skill’s purpose is exploitation.
Confidence: 95%Severity: 86%
Audit Metadata