php-exploit-chain

Warn

Audited by Socket on May 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent, but its purpose is to enable AI-assisted offensive security by chaining vulnerabilities into exploitation paths. There is little evidence of credential theft or covert exfiltration, and install trust is mostly benign aside from a referenced third-party CLI; the main risk is the explicit exploit-tooling capability itself.

Confidence: 93%Severity: 88%
Audit Metadata
Analyzed At
May 4, 2026, 08:18 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fphp-exploit-chain%2F@d793ccdc504477943e4e8f248571d6cc65b9fa9e
Security Audit — socket — php-exploit-chain