linux-exploit-suggester
Fail
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: HIGHREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The documentation instructs the agent or user to download an external shell script from an unverified GitHub repository (
The-Z-Labs) and pipe it directly into bash (curl -sL https://raw.githubusercontent.com/... | bash). - [REMOTE_CODE_EXECUTION]: The workflows section includes a pattern where code is fetched from an arbitrary placeholder domain (
http://ATTACKER:8080/linux-exploit-suggester.sh) to the local temporary directory and immediately executed via bash. - [COMMAND_EXECUTION]: The skill provides command snippets that execute a local script with arbitrary arguments (such as
--kernel,--uname, and--checksec) to probe system details and security configurations.
Recommendations
- HIGH: Downloads and executes remote code from: http://ATTACKER:8080/linux-exploit-suggester.sh, https://raw.githubusercontent.com/The-Z-Labs/linux-exploit-suggester/master/linux-exploit-suggester.sh - DO NOT USE without thorough review
- AI detected serious security threats
Audit Metadata