conducting-internal-network-penetration-test

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as an internal pentest playbook, but it equips an AI agent with high-risk offensive capabilities including credential harvesting, remote execution, privilege escalation, and domain compromise. No obvious third-party credential-harvesting endpoint is shown, but the skill is dangerous by design and inappropriate for broad autonomous use.

Confidence: 94%Severity: 93%
Audit Metadata
Analyzed At
Apr 9, 2026, 09:43 AM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fconducting-internal-network-penetration-test%2F@91fa7874587cb49bb6cb48f81b7ea6098dc49378