reverse-ctf

Warn

Audited by Socket on Sep 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent for reverse-engineering CTF work and shows no clear credential theft or covert exfiltration, but it is an offensive/security toolset for AI agents and explicitly installs trust transitively by loading other technique skills. Risk is driven by offensive capability, execution of untrusted binaries, and transitive skill loading rather than malware indicators.

Confidence: 90%Severity: 71%
Audit Metadata
Analyzed At
Sep 5, 2026, 10:43 PM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Freverse-ctf%2F@1e8421723d609bc149003ecdb40ab5ce21c9df42952e87d60d6b2f77ca5c8dce
Security Audit — socket — reverse-ctf