detecting-t1055-process-injection-with-sysmon

Pass

Audited by Socket on Jun 20, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Jun 20, 2026, 08:31 PM
Package URL
pkg:socket/skills-sh/oyi77%2F1ai-skills%2Fdetecting-t1055-process-injection-with-sysmon%2F@5ede2e07273f9fb91f0becc2337d91c4741f1763f72f80ea9200ba3c070ec1c8
Security Audit — socket — detecting-t1055-process-injection-with-sysmon