exploiting-insecure-data-storage-in-mobile

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for authorized mobile penetration testing, but its actual capability set is explicitly offensive and centered on extracting secrets from devices. Install trust is mostly acceptable except for the unpinned third-party abe.jar reference. High security risk comes from offensive-security enablement and credential extraction, not clear malware or hidden exfiltration.

Confidence: 90%Severity: 86%
Audit Metadata
Analyzed At
Apr 9, 2026, 10:28 AM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fexploiting-insecure-data-storage-in-mobile%2F@2c7db59ed38cd2b885d7320d2b40d9a51dee0984