exploiting-idor-vulnerabilities

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as an offensive IDOR-testing guide, but that purpose itself is high risk for an AI agent because it enables exploit activity, credential handling, record enumeration, and potentially destructive requests. Install trust is mixed: Burp is official, while the named Burp extension is third-party with some provenance ambiguity. Not confirmed malware, but a high-risk offensive security skill.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Mar 15, 2026, 01:30 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fexploiting-idor-vulnerabilities%2F@ae2cb3cdda08c441896eecaae6c8a4fe192881df