revshells

Warn

Audited by Socket on Sep 15, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. It is internally consistent with its stated purpose, but that purpose is to equip the agent with reverse-shell and remote-command-execution payloads. No clear credential harvesting or deceptive install path is present, so this is not confirmed malware, but it is a high-risk offensive security skill that should not be broadly trusted.

Confidence: 94%Severity: 90%
SecurityMEDIUM
references/listeners-and-pty-upgrades.md

The fragment is offensive reverse-shell and post-exploitation guidance. It does not itself contain executable malware or a hardcoded credential, but it provides actionable instructions for establishing remote command execution, upgrading shells, encoding injection payloads, and reducing forensic visibility. It should be treated as high-risk operational content, particularly if included in a package without a clearly documented security-testing purpose.

Confidence: 99%Severity: 86%
Audit Metadata
Analyzed At
Sep 15, 2026, 09:59 AM
Package URL
pkg:socket/skills-sh/aeondave%2Fmalskill%2Frevshells%2F@9fae4ce73b057d9fa1455b264fb135c344092e1519d9ad1a0af99bc7ae5877af
Security Audit — socket — revshells