jndi-injection

Warn

Audited by Socket on Jul 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

High-risk offensive security skill. Its purpose and content are aligned, but that purpose is to help an AI agent execute JNDI/Log4Shell attacks, including data exfiltration and RCE using external exploit tooling. Not confirmed malware by itself, but clearly a dangerous exploitation capability.

Confidence: 96%Severity: 93%
Audit Metadata
Analyzed At
Jul 21, 2026, 01:28 PM
Package URL
pkg:socket/skills-sh/strivepan-svg%2Fhack-skills%2Fjndi-injection%2F@eefe6c76c9f9c829453c7c07d788489bad9a52113ae2ec2d05c6436375a6df3c
Security Audit — socket — jndi-injection