responder
Audited by Socket on Sep 15, 2026
2 alerts found:
Securityx2High-risk offensive security skill. Its capabilities align with its stated purpose, but that purpose is to poison local name resolution, capture authentication hashes, and support relay/cracking workflows, which is dangerous for an AI agent even without overt malware or suspicious installer behavior.
The fragment is a detailed NTLM relay and Active Directory attack guide. It contains no package implementation code, but the described commands directly facilitate credential capture, remote code execution, administrator-account creation, hash dumping, LDAP/RBCD privilege escalation, and password cracking. It should be treated as high-risk offensive content and not used against systems without explicit authorization.