ios-pentesting

Fail

Audited by Socket on Jun 16, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md
MalwareHIGH
references/ios-frida-dynamic.md

This fragment is a high-risk offensive instrumentation and bypass/exfiltration playbook. It explicitly manipulates security-critical decision points (biometrics/authentication, jailbreak/anti-tamper checks, and TLS trust/pinning via Security framework trust evaluation) and provides step-by-step procedures to dump and search for sensitive secrets (Keychain, credential storage, cookies, NSUserDefaults, and process memory). If such content were packaged or supplied through a dependency, it would materially enable unauthorized account access, bypass of runtime protections, and credential theft. Confidence is high despite missing packaging context because the observable code and instructions directly implement bypass and secret extraction behaviors.

Confidence: 60%Severity: 90%
Audit Metadata
Analyzed At
Jun 16, 2026, 03:15 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fios-pentesting%2F@70fe7dec6ae6ea63884a4ff5833d7e4ba46f99b68ce5ca023e01b5c49bbff96e
Security Audit — socket — ios-pentesting