stack-overflow-and-rop

Warn

Audited by Socket on Sep 15, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as an exploit-development guide, but its stated purpose is to enable offensive binary exploitation, bypass mitigations, and extract data/execute code on targets. The scanner's command-injection hits are benign markdown artifacts, yet the overall skill remains high risk because it equips an AI agent with penetration-testing and exploitation procedures.

Confidence: 95%Severity: 89%
AnomalyLOW
ROP_ADVANCED_TECHNIQUES.md

This fragment is exploit-development guidance that directly enables control-flow hijacking (ROP/COP/JOP, ret2csu) and syscall-based open/read/write actions to exfiltrate a sensitive file (e.g., ‘flag’). While it does not, by itself, demonstrate executable malware logic, its contents are strongly offensive and would be highly concerning if embedded within a software dependency intended for benign use. Further review of surrounding package files would be needed to confirm whether it is merely documentation or part of runtime/packaging logic.

Confidence: 55%Severity: 68%
Audit Metadata
Analyzed At
Sep 15, 2026, 02:14 PM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fstack-overflow-and-rop%2F@f496e0d3cb4930a73c84efdcf7d8b35c1f539152398cdb3702aa4600ba7a1fc9
Security Audit — socket — stack-overflow-and-rop