network-credential-cracking

Warn

Audited by Socket on Sep 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for offensive security work, but it equips an AI agent to extract and crack credential material from sensitive files and captured auth data, then reuse recovered passwords for further access. The scanner's command-injection hits are benign markdown false positives; the main risk is the explicitly offensive credential-cracking capability and broad use of external security tools.

Confidence: 93%Severity: 84%
Audit Metadata
Analyzed At
Sep 20, 2026, 11:03 PM
Package URL
pkg:socket/skills-sh/noorqureshi%2Fsploitagent%2Fnetwork-credential-cracking%2F@b3d553c91c83b97cbc39a835d60a4e973fbf15675bbdfe7ad03a38475f7190e5
Security Audit — socket — network-credential-cracking