AWS Penetration Testing

Warn

Audited by Socket on Sep 14, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally aligned with offensive AWS pentesting, but it equips the agent to steal credentials, escalate privileges, implant persistence, and disable logging. The tool installs are partly legitimate but unpinned, and the overall capability set is high-risk for an AI agent because it enables autonomous exploitation and credential abuse rather than bounded auditing.

Confidence: 95%Severity: 93%
SecurityMEDIUM
references/advanced-aws-pentesting.md

The fragment is a dual-use AWS penetration-testing reference and contains explicit, dangerous backdoor and credential-extraction examples. It does not itself execute commands, exfiltrate data, or install persistence because it is documentation only. Treat distribution and use as high-risk operational guidance, while the malware likelihood for this non-executable fragment remains low.

Confidence: 99%Severity: 72%
Audit Metadata
Analyzed At
Sep 14, 2026, 07:21 AM
Package URL
pkg:socket/skills-sh/googyosoo%2Fantigravity-skills%2Faws-penetration-testing%2F@254725b98e5096709a455b35271bef0d4232cede
Security Audit — socket — AWS Penetration Testing