network-protocol-attacks

Pass

Audited by Gen Agent Trust Hub on Jul 21, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides numerous commands for executing high-risk network tools such as arpspoof, ettercap, bettercap, yersinia, and the atk6 suite to perform MitM and protocol attacks.\n- [COMMAND_EXECUTION]: Includes instructions for modifying critical system network parameters, such as enabling IP forwarding (/proc/sys/net/ipv4/ip_forward) and loading kernel modules (modprobe 8021q).\n- [EXTERNAL_DOWNLOADS]: References the installation of the mitm6 tool via the Python package manager and the use of external scripts like frogger.sh for VLAN hopping.\n- [DATA_EXFILTRATION]: The skill's primary objective is the capture and exfiltration of network-based credentials, specifically NetNTLM hashes, via poisoning attacks using Responder and mitm6.\n- [COMMAND_EXECUTION]: Documents advanced attack chains involving ntlmrelayx.py for relaying captured credentials to services like LDAP, MSSQL, and SMB to achieve further exploitation.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 21, 2026, 01:24 PM
Security Audit — agent-trust-hub — network-protocol-attacks