waf-bypass-techniques
Audited by Socket on Apr 9, 2026
2 alerts found:
Securityx2SUSPICIOUS: the skill is coherent with its stated purpose, but that purpose is to help an AI agent bypass security controls and support exploit delivery. There is little evidence of credential theft or malicious exfiltration, yet the offensive-security functionality makes it high risk for misuse.
No executable malware behavior is present in this fragment; however, the module is an offensive, vendor-specific WAF/CDN bypass cheat-sheet containing actionable evasion guidance and example payloads. As a supply-chain artifact, this is high-risk from an abuse-prevention standpoint and warrants investigation of provenance, inclusion purpose, and whether it is part of an unexpected or malicious distribution.