aws-penetration-testing

Fail

Audited by Socket on Jun 26, 2026

2 alerts found:

SecurityObfuscated File
SecurityMEDIUM
SKILL.md
Obfuscated FileHIGH
references/advanced-aws-pentesting.md

This file is a high-risk, dual-use AWS offensive reference containing actionable enumeration and exploitation techniques, including a direct Lambda backdoor example that programmatically grants AdministratorAccess. The content itself is not an automatically executing malware artifact, but it materially lowers the barrier to perform privilege escalation, secret exfiltration, persistence and lateral movement in AWS. Treat the document as sensitive: restrict its distribution, monitor for the specific IAM and Lambda actions it prescribes, and apply defensive controls to detect or prevent the flows described.

Confidence: 90%
Audit Metadata
Analyzed At
Jun 26, 2026, 07:23 PM
Package URL
pkg:socket/skills-sh/rootcastleco%2Frei-skills%2Faws-penetration-testing%2F@056fbbae32df911cd9d4c647111e15e9d0b1fee9d44454ab637e3308a98ff033
Security Audit — socket — aws-penetration-testing