offensive-phishing

Warn

Audited by Socket on Aug 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its stated purpose is offensive phishing, and its actual footprint matches that: phishing infrastructure setup, payload weaponization, credential harvesting, session-token interception, and email evasion. There is no hidden exfiltration beyond the stated offensive goal, so this is not confirmed malware, but it gives an AI agent dangerous real-world offensive security capabilities and explicit credential theft workflows.

Confidence: 97%Severity: 95%
Audit Metadata
Analyzed At
Aug 27, 2026, 02:28 PM
Package URL
pkg:socket/skills-sh/snailsploit%2Fclaude-red%2Foffensive-phishing%2F@4d4dc8cc9071d2a44fc2a8a339a897b22afe47d40b128cee25cedf9b9e80b83d
Security Audit — socket — offensive-phishing