sqli-sql-injection

Fail

Audited by Socket on Apr 30, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

MALICIOUS. The skill's stated purpose is offensive exploitation, and its actual footprint matches that: it teaches an AI agent how to exploit SQLi, exfiltrate data to attacker-controlled infrastructure, and escalate to OS-level compromise. Install-trust risk is low-to-moderate, but the operational risk is extremely high because the skill is an attack-enablement playbook rather than a legitimate defensive or narrowly scoped development aid.

Confidence: 97%Severity: 99%
Audit Metadata
Analyzed At
Apr 30, 2026, 12:02 PM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fsqli-sql-injection%2F@77b2e59c9fc79a3548302438ca31a05c3a2c4bfc