风险评分

41/100 (Medium)

OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: unknown

BYOCB ArbInjectionSkill

作者: CryptoToolDev
Slug:arb-injection
版本:1.0.0
更新时间:2026-03-24 11:26:06
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill's stated purpose (scanning EVM contracts for arbitrary-call injection) matches its instructions, but the SKILL.md directs the agent to clone and run third‑party code, run npm installs, and s...

[内容已截断]

VirusTotal: suspicious VT 报告

静态扫描: unknown

README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1770288657699,
        "_id": "k97ex01bcmf017tyctxm863z1580jqz6",
        "changelog": "Initial public release.\n\n- Scan EVM smart contracts for arbitrary call injection vulnerabilities.\n- Real-time monitoring of blockchain contract deployments on major EVM chains.\n- Immediate user alerts for CRITICAL and HIGH severity findings.\n- Manual scan capability for specific addresses.\n- Built-in false positive detection for common safe patterns and known contracts.\n- Results saved to local directory for review and alerting workflows.",
        "changelogSource": "user",
        "createdAt": 1770288657699,
        "version": "1.0.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "publishers:missing",
        "displayName": "CryptoToolDev",
        "handle": "cryptotooldev",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/131488347?v=4",
        "kind": "user",
        "linkedUserId": "kn7ew3hfahvmq9tqhvqt5avzen80jga2"
    },
    "ownerHandle": "cryptotooldev",
    "skill": {
        "_creationTime": 1770288236518,
        "_id": "kd7eh2c46xwqyb0p7zwmcntgen80jgn3",
        "badges": [],
        "createdAt": 1770288236518,
        "displayName": "BYOCB ArbInjectionSkill",
        "latestVersionId": "k97ex01bcmf017tyctxm863z1580jqz6",
        "ownerUserId": "kn7ew3hfahvmq9tqhvqt5avzen80jga2",
        "slug": "arb-injection",
        "stats": {
            "comments": 0,
            "downloads": 1179,
            "installsAllTime": 0,
            "installsCurrent": 0,
            "stars": 0,
            "versions": 2
        },
        "summary": "BYOCB ArbInjectionSkill: Scan EVM smart contracts for arbitrary call injection vulnerabilities. Monitor chains in real-time or scan specific addresses.",
        "tags": {
            "blockchain": "k97ex01bcmf017tyctxm863z1580jqz6",
            "evm": "k97ex01bcmf017tyctxm863z1580jqz6",
            "latest": "k97ex01bcmf017tyctxm863z1580jqz6",
            "security": "k97ex01bcmf017tyctxm863z1580jqz6",
            "solidity": "k97ex01bcmf017tyctxm863z1580jqz6",
            "vulnerability-scanner": "k97ex01bcmf017tyctxm863z1580jqz6"
        },
        "updatedAt": 1774322766199
    }
}