ghost-bits-cast-attack

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK offensive exploit skill. Its footprint is coherent with its stated purpose, but that purpose is to give an AI agent practical attack capability against real Java services, including payload generation and live exploitation workflows. No strong evidence of hidden malware or credential theft, but the skill materially increases offensive security risk and should be treated as a high-risk exploit tool.

Confidence: 92%Severity: 93%
Audit Metadata
Analyzed At
Sep 15, 2026, 02:20 PM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fghost-bits-cast-attack%2F@56ec2d900df5fb20c0d4d63a4e914f5be616e7231aeec7f5925d1712ee153d19
Security Audit — socket — ghost-bits-cast-attack