YARA rule 'agent_skill_prompt_injection_hidden_instructions': Prompt injection or hidden instructions embedded in AI agent skill text [agent_skills]
High
- Category
- YARA Match
- Content
--- name: ruhui description: > Use when building a feature that needs programmable common sense, when an LLM prompt-and-parse step should become a structured decision, or when routing, ranking, extraction, verification, moderation, or triage needs a fast, local, bilingual (Chinese + English) judgment. Ruhui (如晦) is an open-source, self-hosted System 1 decision engine that turns natural language and app state into typed choice/noul/score answers with calibrated probabilities — no text generation, no parsing, no hallucination. Two backends: a Qwen3.5 LoRA model (recommended) and a 322M bert encoder (~33 ms). Runs offline, no API key. version: 0.2.0 author: AnyForge license: Apac
- Confidence
- 80% confidence
- Finding
- YARA rule matched a hack tool or exploit indicator (offensive tools, reconnaissance, privilege escalation, or exploit frameworks).
