Cloud Penetration Testing

Fail

Audited by Socket on Jul 28, 2026

2 alerts found:

MalwareSecurity
MalwareHIGH
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its capabilities are coherent with its stated purpose, but that purpose is to equip an AI agent with offensive cloud penetration, credential access, secret extraction, and persistence techniques. Official installers reduce malware certainty, yet the overall security risk is very high because the skill meaningfully enables exploitation and persistent account changes in real cloud environments.

Confidence: 97%Severity: 94%
SecurityMEDIUM
references/advanced-cloud-scripts.md

This code fragment is not benign infrastructure automation; it is an offensive cloud pentesting toolkit that includes direct credential-access (password spraying with persistence of valid credentials), token acquisition (OAuth device-code and IMDS managed-identity token retrieval), and a tenant privilege-escalation workflow (Graph role assignment). It also performs broad sensitive configuration/data harvesting into local files. Even without obfuscation, its operational capabilities present a high security risk and strong misuse potential.

Confidence: 74%Severity: 85%
Audit Metadata
Analyzed At
Jul 28, 2026, 05:50 AM
Package URL
pkg:socket/skills-sh/IGUNUBLUE%2Fawesome-AI-skills%2Fcloud-penetration-testing%2F@8af18eed5c9c738434f0a689d8c145f83b065f66
Security Audit — socket — Cloud Penetration Testing