sqli-sql-injection
Audited by Socket on Sep 15, 2026
2 alerts found:
Securityx2SUSPICIOUS/HIGH-RISK skill. It is internally coherent as a SQL injection exploitation playbook and uses official sqlmap references rather than a shady installer, but its purpose is offensive security for an AI agent: exploitation, exfiltration, credential/hash capture, file writes, and OS command execution. The scanner's command-substitution hits are mostly false positives from documentation syntax, yet the overall skill remains high risk because it operationalizes real attack techniques.
No executable dependency code is present in the provided fragment; it is a multi-database SQL/CQL/SQLite exploitation cheat-sheet. As such, there is no direct evidence of runtime malware or covert exfiltration from this snippet alone. However, the content explicitly includes escalation techniques (command execution, webshell/file-write concepts, persistence via cron, and dynamic extension loading) and authentication/boolean bypass payload patterns, making the artifact highly risky from a misuse and supply-chain hygiene perspective. Treat as suspicious non-code/weaponized material and verify the surrounding repository/package contents for actual executable behavior (install scripts, postinstall hooks, network/file/process actions).