windows-credential-harvesting

Fail

Audited by Socket on Jul 6, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

High-risk offensive security skill. Its capabilities are internally consistent with its stated purpose, but that purpose is to harvest credentials, dump secrets, and support lateral movement using an AI agent. This is not deceptive malware distribution, but it is a dangerous exploit/credential-theft capability and should be treated as maliciously enabling abuse.

Confidence: 94%Severity: 96%
Audit Metadata
Analyzed At
Jul 6, 2026, 09:18 AM
Package URL
pkg:socket/skills-sh/blacklanternsecurity%2Fred-run%2Fwindows-credential-harvesting%2F@d7d63f62aa2f6b1f917cd01fb97c57f4c6eda5b06c9a98a50f7fa786c321c4f6
Security Audit — socket — windows-credential-harvesting