waf-bypass-techniques

Warn

Audited by Socket on Apr 9, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent with its stated purpose, but that purpose is to help an AI agent bypass security controls and support exploit delivery. There is little evidence of credential theft or malicious exfiltration, yet the offensive-security functionality makes it high risk for misuse.

Confidence: 93%Severity: 86%
SecurityMEDIUM
WAF_PRODUCT_MATRIX.md

No executable malware behavior is present in this fragment; however, the module is an offensive, vendor-specific WAF/CDN bypass cheat-sheet containing actionable evasion guidance and example payloads. As a supply-chain artifact, this is high-risk from an abuse-prevention standpoint and warrants investigation of provenance, inclusion purpose, and whether it is part of an unexpected or malicious distribution.

Confidence: 74%Severity: 88%
Audit Metadata
Analyzed At
Apr 9, 2026, 01:14 PM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Fwaf-bypass-techniques%2F@48e77c070f46818821eb4454be87b0a02f50a9ef