Metasploit Framework

Warn

Audited by Socket on Jul 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally consistent as an offensive Metasploit guide, and the installer is same-org official, so this is not confirmed malware. However, it grants an AI agent explicit penetration-testing and post-exploitation capabilities including credential harvesting, persistence, keylogging, payload creation, and data extraction, making it a high-risk security skill.

Confidence: 97%Severity: 91%
Audit Metadata
Analyzed At
Jul 28, 2026, 05:49 AM
Package URL
pkg:socket/skills-sh/IGUNUBLUE%2Fawesome-AI-skills%2Fmetasploit-framework%2F@bec98ac8b7107263817633beb86c4c906422d771
Security Audit — socket — Metasploit Framework