ssrf-server-side-request-forgery
Audited by Socket on Sep 15, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS/HIGH RISK. This skill is internally consistent as an SSRF exploitation playbook, but its purpose is to equip an AI agent with offensive security and exfiltration techniques, including cloud credential theft, local secret access, OOB callbacks, and SSRF-to-RCE chains. No hidden installer or stealth behavior is present, so this is not confirmed malware, but it is a high-risk offensive skill.
The provided content is not executable dependency code; it is an exploit/payload documentation fragment describing SSRF/DNS-rebinding techniques with highly actionable payloads targeting internal services and cloud metadata for credential theft, persistence, and webshell deployment. While this excerpt alone does not prove that the dependency executes malware, it is a serious supply-chain governance red flag (exploit enablement/weaponized content).