crypto-ctf
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [DYNAMIC_EXECUTION]: The skill provides technical snippets in
references/prng.mdthat use thectypeslibrary to interface directly withlibcfor the purpose of synchronizing with C-based pseudo-random number generators. - [COMMAND_EXECUTION]: The resource files contain an extensive collection of specialized Python and SageMath scripts designed to perform advanced mathematical attacks, including lattice reduction, discrete logarithm solving, and RSA factorization.
- [INDIRECT_PROMPT_INJECTION]: As a tool designed to process untrusted cryptographic artifacts such as ciphertexts, keys, and oracle responses, the skill inherently possesses an ingestion surface for data that could contain malicious instructions, though this is managed within its primary purpose of security analysis.
- [EXTERNAL_DOWNLOADS]: The documentation neutrally references well-known security tools and repositories, such as
rsactftool,padbuster,fastcoll, andnonce-disrespect, as appropriate resources for implementing specific cryptographic attack methodologies.
Audit Metadata