llm-attacks-security

Fail

Audited by Socket on Mar 18, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

SUSPICIOUS: the skill is an offensive LLM attack guide and explicitly covers jailbreaks, prompt extraction, and sensitive data extraction. It also instructs the agent to ingest mutable third-party markdown from a personal GitHub repo, creating indirect prompt-injection risk if the agent can edit files based on that content. No malware or credential theft is directly shown, but the capability set is high-risk and not merely a benign documentation helper.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Mar 18, 2026, 08:13 PM
Package URL
pkg:socket/skills-sh/gmh5225%2Fawesome-ai-security%2Fllm-attacks-security%2F@14a04cc52f074af14b6806e98778a0b82c355316