vapt
Fail
Audited by Socket on Jul 2, 2026
3 alerts found:
Securityx2MalwareSecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
Malwarereferences/exploitation-chaining.md
HIGHMalwareHIGH
references/exploitation-chaining.md
High-risk offensive exploitation content. The fragment provides actionable step-by-step attack chains spanning web exploitation, AD/SMB/LDAP attacks, SQLi→OS command execution patterns, XSS→account takeover, API IDOR→privilege escalation attempts, SSH brute force, and includes a custom reverse-shell command generator plus response-based verification logic. If included in a software package/dependency, it would be a severe supply-chain security concern due to ready-to-use malicious functionality. Confidence is high that the provided content is malicious, but overall “package behavior” (e.g., whether it executes automatically on install/import) is not provable from this snippet alone.
Confidence: 86%Severity: 98%
Securityreferences/metasploit-reference.md
MEDIUMSecurityMEDIUM
references/metasploit-reference.md
Audit Metadata