cobalt-strike

Warn

Audited by Socket on Apr 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is internally consistent with its stated purpose, but that purpose is to operate a high-risk offensive security platform. It is not confirmed malware and does not show deceptive third-party install or exfiltration behavior in the provided text, yet it enables credential theft, lateral movement, covert C2, and remote execution, so it should be classified as high risk.

Confidence: 94%Severity: 93%
Audit Metadata
Analyzed At
Apr 16, 2026, 08:22 PM
Package URL
pkg:socket/skills-sh/AeonDave%2Fmalskill%2Fcobalt-strike%2F@61e65f4ba39864e7a1a9d5b66249be83e438318c
Security Audit — socket — cobalt-strike