performing-web-cache-deception-attack
Warn
Audited by Socket on Apr 7, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent, but its stated purpose is to help an AI agent perform real offensive web attacks and extract sensitive authenticated content from targets. There is little supply-chain concern, but the exploit, credential/session use, data-exposure objective, and victim-social-engineering steps make it high security risk.
Confidence: 95%Severity: 94%
Audit Metadata