windows-boundaries
Fail
Audited by Snyk on Jul 2, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). This content is explicitly offensive: it provides ready-to-run tools and step‑by‑step instructions (BYOVD driver loader / MSR LSTAR hijack, IOCTL fuzzer, named-pipe/RPC impersonation, UAC COM/fodhelper bypass, BYOVDLL for loading vulnerable DLLs into PPL/LSASS, LSASS dump workflows, sandbox-escape probes) intended to escalate privileges, defeat EDR/PPL, obtain SYSTEM, and dump/steal credentials — demonstrating clear malicious intent and backdoor/exfiltration capability.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 1.00). The prompt explicitly instructs and scripts privileged actions that alter system state—UAC bypasses, loading drivers/services, registry hijacks, dumping LSASS, sandbox escapes and kernel R/W exploits—so it directs the agent to obtain elevated privileges and modify protected system files and state.
Issues (2)
E006
CRITICALMalicious code pattern detected in skill scripts.
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata