sqli-sql-injection

Warn

Audited by Socket on Sep 15, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. It is internally coherent as a SQL injection exploitation playbook and uses official sqlmap references rather than a shady installer, but its purpose is offensive security for an AI agent: exploitation, exfiltration, credential/hash capture, file writes, and OS command execution. The scanner's command-substitution hits are mostly false positives from documentation syntax, yet the overall skill remains high risk because it operationalizes real attack techniques.

Confidence: 95%Severity: 90%
SecurityMEDIUM
SCENARIOS.md

No executable dependency code is present in the provided fragment; it is a multi-database SQL/CQL/SQLite exploitation cheat-sheet. As such, there is no direct evidence of runtime malware or covert exfiltration from this snippet alone. However, the content explicitly includes escalation techniques (command execution, webshell/file-write concepts, persistence via cron, and dynamic extension loading) and authentication/boolean bypass payload patterns, making the artifact highly risky from a misuse and supply-chain hygiene perspective. Treat as suspicious non-code/weaponized material and verify the surrounding repository/package contents for actual executable behavior (install scripts, postinstall hooks, network/file/process actions).

Confidence: 62%Severity: 88%
Audit Metadata
Analyzed At
Sep 15, 2026, 12:51 AM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fsqli-sql-injection%2F@b1147c7682eb3c95bb5fd74566e7807c6317d1fb5ee899b480bd055ea08ddd9b
Security Audit — socket — sqli-sql-injection