ligolo-ng
Warn
Audited by Socket on Apr 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is not a normal admin/integration helper; it is an offensive post-compromise pivoting capability for AI agents. Install provenance is relatively consistent with the upstream project, but the core purpose enables lateral movement through compromised hosts, uses weakened TLS validation, and requires privileged network changes. Overall this is high-risk and suspicious, driven mainly by exploit/pivot functionality rather than supply-chain deception.
Confidence: 95%Severity: 93%
Audit Metadata