vuln-research

Warn

Audited by Socket on Mar 14, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
references/sinks/dotnet.md

This fragment identifies high-risk .NET sinks and attack surfaces that warrant careful audit in any consuming project. It highlights potential abuse vectors (deserialization, RCE via dynamic execution, SSRF, SQLi, path traversal, XSS, LDAP) but provides no runnable code or mitigations. The actual risk depends on surrounding usage, input validation, and secure deserialization strategies in the codebase.

Confidence: 59%Severity: 62%
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent and not deceptive, but its core function is to turn the agent into an offensive security operator capable of exploit discovery and PoC development. The main risk is not credential theft or supply-chain abuse; it is enabling high-impact security testing and exploit activity against external targets.

Confidence: 94%Severity: 88%
Audit Metadata
Analyzed At
Mar 14, 2026, 01:51 PM
Package URL
pkg:socket/skills-sh/Lu1sDV%2Fskillsmd%2Fvuln-research%2F@f719d88b5fc32517a2121a0a3e0c4153da3e21d0