performing-physical-intrusion-assessment

Fail

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: HIGHREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill includes a USB Rubber Ducky script example that uses PowerShell's 'IEX' command to download and execute a remote script from 'https://c2.redteam.com/stager.ps1'.
  • [COMMAND_EXECUTION]: The skill provides configuration steps for a LAN Turtle to establish an automated reverse SSH tunnel to 'c2.redteam.com' on port 2222, facilitating unauthorized remote access to the internal network.
  • [DATA_EXFILTRATION]: Documentation within the skill describes using a WiFi Pineapple to perform 'evil twin' attacks to capture wireless credentials and exfiltrate data to external servers via cellular modems.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jun 20, 2026, 03:08 PM
Security Audit — agent-trust-hub — performing-physical-intrusion-assessment