Trust Me, Import This: Dependency Steering Attacks via Malicious Agent Skills | ArxivCSExplorer