mobile-pentest

Fail

Audited by Socket on Sep 17, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for mobile app pentesting, but it equips an AI agent with high-risk offensive security capabilities, including bypass and data-extraction steps. Install sources appear mostly legitimate though unpinned; the main concern is the breadth and intrusiveness of the agent's testing power rather than hidden malware or covert exfiltration.

Confidence: 91%Severity: 81%
MalwareHIGH
REFERENCE.md

This fragment is penetration-testing/offensive tooling rather than benign dependency code. It contains high-misuse-capability snippets: an Android universal TLS pinning/trust verification bypass (via Frida hooks/overrides) and an iOS hook targeting the Keychain credential access API (SecItemCopyMatching) with logging. While the Python report generator itself is benign and no exfiltration/persistence is shown, the included bypass/instrumentation capabilities make the overall content highly dangerous if shipped as part of a software supply chain dependency or executed outside authorized testing.

Confidence: 72%Severity: 92%
Audit Metadata
Analyzed At
Sep 17, 2026, 07:04 AM
Package URL
pkg:socket/skills-sh/woohyun212%2Fsecurity-skill%2Fmobile-pentest%2F@bb23a13382fe9a49bbdaf29ad406c513cae374360d97a3eb8bc598cc8f124e89
Security Audit — socket — mobile-pentest