Malicious Pdf
π Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp Collaborator or Interact.sh
Install with one command
$ npx skills add jonaslejon/malicious-pdfDecision summary
Production-ready for Document processing
Use this as a leading candidate, then validate the README and install path in your own agent stack.
Best for
- Document processing workflows
- Claude Code teams
- teams that value GitHub adoption signals
Not ideal for
- teams that need a vendor-supported SLA
- high-compliance environments without internal security review
Risk notes
- No major risk signals from current metadata
Quality profile
Excellent candidate for agent workflows
High-confidence pick with strong adoption and healthy maintenance signals.
Workflow fit
Use this skill in these scenarios
Parse messy files
Document processing
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Verify behavior
Testing and QA
I need my agent to test a web app, reproduce bugs, and verify fixes.
Build and ship code
Coding agents
I need a coding agent that can understand a repository, edit code, and review pull requests.
Stack fit
Add it to a complete workflow
Inspect, patch, and verify code
Coding review agent
A stack for software agents that inspect repositories, review pull requests, generate tests, and turn findings into shippable patches.
Ingest, retrieve, and cite
RAG knowledge base
A stack for document-heavy agents that ingest files, create searchable knowledge, retrieve relevant context, and answer with grounded sources.
Scrape, clean, and reuse web data
Web data pipeline
A practical stack for agents that crawl public pages, extract clean content, normalize data, and hand it to downstream research or RAG workflows.
Overview
π Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp Collaborator or Interact.sh
Imported by the skill-only GitHub discovery pipeline because it matches agent skill, automation, RAG, or developer-tool signals. Protocol-server projects are excluded from automated imports.
Platform Compatibility
Technical Details
- Version
- 1.0.0
- License
- BSD-2-Clause
- Last Updated
- 6/6/2026
- Published
- 6/5/2026
Frameworks & Tools
Claim this skill
Project owners can request ownership review. Approved claims unlock a stronger trust signal.
Author
jonaslejonβ
@jonaslejon
Tags
Platform Fit
Health Signals
- GitHub stars
- 3.7K
- Quality score
- 67/100
- Last GitHub push
- Jun 4, 2026
- Framework hints
- 2
- OpenAgentSkill views
- 2
- Install copies
- 0
- Outbound clicks
- 0
Community Signal
Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.
Trust & Safety
- βOpen source (public GitHub repo)
- βAI static analysis passed
- βLicense: BSD-2-Clause
- βManually verified by team
Related Skills
Stirling PDF
#1 PDF Application on GitHub that lets you edit PDFs on any device anywhere
80.3K stars Β· 0 installsTesseract
Tesseract Open Source OCR Engine (main repository)
74.6K stars Β· 0 installsMinerU
Transforms complex documents like PDFs and Office docs into LLM-ready markdown/JSON for your Agentic workflows.
66.8K stars Β· 0 installsDocling
Get your documents ready for gen AI
61.1K stars Β· 0 installs