adcs-template-abuse

Pass

Audited by Gen Agent Trust Hub on Jul 6, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for executing command-line security tools, such as Certipy, Rubeus, and Certify.exe, to identify and exploit vulnerabilities in AD CS templates. These actions are aligned with the skill's stated purpose for authorized security testing.
  • [DATA_EXFILTRATION]: The skill manages sensitive authentication artifacts, including PFX certificates and Kerberos ticket-granting tickets (TGTs), which are stored locally within an engagement directory. There is no evidence of unauthorized external data transmission.
  • [PROMPT_INJECTION]: The skill has an indirect injection surface by utilizing output from security tools and an MCP state server to determine exploitation paths.
  • Ingestion points: get_state_summary() MCP server and standard output from tools like certipy find.
  • Boundary markers: None identified.
  • Capability inventory: Shell command execution via multiple security tools.
  • Sanitization: No explicit validation or filtering of external data is described.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 6, 2026, 09:15 AM
Security Audit — agent-trust-hub — adcs-template-abuse