network-protocol-attacks
Pass
Audited by Gen Agent Trust Hub on Jul 21, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides numerous commands for executing high-risk network tools such as
arpspoof,ettercap,bettercap,yersinia, and theatk6suite to perform MitM and protocol attacks.\n- [COMMAND_EXECUTION]: Includes instructions for modifying critical system network parameters, such as enabling IP forwarding (/proc/sys/net/ipv4/ip_forward) and loading kernel modules (modprobe 8021q).\n- [EXTERNAL_DOWNLOADS]: References the installation of themitm6tool via the Python package manager and the use of external scripts likefrogger.shfor VLAN hopping.\n- [DATA_EXFILTRATION]: The skill's primary objective is the capture and exfiltration of network-based credentials, specifically NetNTLM hashes, via poisoning attacks usingResponderandmitm6.\n- [COMMAND_EXECUTION]: Documents advanced attack chains involvingntlmrelayx.pyfor relaying captured credentials to services like LDAP, MSSQL, and SMB to achieve further exploitation.
Audit Metadata