exploiting-jwt-algorithm-confusion-attack

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

High-risk offensive security skill. Its capabilities are internally consistent with its stated purpose, but that purpose is to help an AI agent exploit JWT vulnerabilities, forge tokens, and attempt admin access on target systems. Official Python deps reduce supply-chain concern somewhat, yet the overall skill remains dangerous because it operationalizes authentication bypass and privilege escalation.

Confidence: 94%Severity: 93%
Audit Metadata
Analyzed At
Apr 10, 2026, 08:32 AM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fexploiting-jwt-algorithm-confusion-attack%2F@84faae6b6b643c1f03c817925d2bb2bfcbcdf8fc