YARA rule 'agent_skill_prompt_injection_hidden_instructions': Prompt injection or hidden instructions embedded in AI agent skill text [agent_skills]
High
- Category
- YARA Match
- Content
��──────────────────────────────────────────────────────────────────────────┘ ``` --- ## §2 Usage ```bash /skill-security-reviewer {target-skill-name} # Examples: /skill-security-reviewer daily-report /skill-security-reviewer threat-modeling /skill-security-reviewer suspicious-obfuscated-skill ``` **Output location**: `./{target-skill-name}-review-report/report-{YYYYMMDD-HHMMSS}.md` --- ## §3 Execution Rules ``` ┌─────────────────────────────────────────────────────────────────────────────┐ │ ⚠️ CRITICAL: Read-only operations + Safe decoding │ ├───────────────────────�- Confidence
- 80% confidence
- Finding
- YARA rule matched a hack tool or exploit indicator (offensive tools, reconnaissance, privilege escalation, or exploit frameworks).
