reverse-shell-techniques
Fail
Audited by Gen Agent Trust Hub on Jul 21, 2026
Risk Level: CRITICALCOMMAND_EXECUTIONREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: The skill contains a vast library of reverse shell and bind shell one-liners for platforms like Linux, Windows, and multiple languages (Python, PHP, Ruby, Perl, etc.). These commands are designed to establish remote interactive access. Automated scans specifically identified high-risk reverse shell patterns and a Trojan signature (BV:Agent-BKA) within the file content.\n- [REMOTE_CODE_EXECUTION]: The skill documents multiple remote code execution patterns, including PowerShell IEX download cradles and piping remote content directly into shell interpreters (curl/bash). These techniques allow for the silent execution of remote payloads.\n- [EXTERNAL_DOWNLOADS]: It provides instructions for fetching external files using system utilities such as certutil, bitsadmin, wget, and curl, facilitating the deployment of additional malicious tools or payloads from attacker-controlled infrastructure.\n- [DATA_EXFILTRATION]: The skill details methods for data transfer, including netcat listeners and Base64 encoding/decoding, which are standard procedures for exfiltrating sensitive information from a compromised host.
Recommendations
- CRITICAL: 1 infected file(s) detected - DO NOT USE
- CRITICAL: 2 file(s) identified as malware by FileRep - DO NOT USE
- AI detected serious security threats
Audit Metadata