performing-firmware-extraction-with-binwalk
Warn
Audited by Socket on Sep 7, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill is internally coherent for firmware analysis, and most commands are standard for that purpose, but it materially equips an AI agent with offensive security/reverse-engineering capabilities. Install trust is mixed: PyPI/system-package usage is normal, yet `binwalk3` is not the upstream publisher's main documented path and `sasquatch` appears to rely on a personal-repo distribution model. No clear credential exfiltration or malicious data routing is present, so this is high-risk vulnerable capability rather than confirmed malware.
Confidence: 94%Severity: 76%
Audit Metadata