metasploit

Warn

Audited by Socket on Sep 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive exploitation capability. No clear malware or deceptive install path is present, yet the skill enables credential theft, persistence, payload generation, and lateral movement, making it high risk.

Confidence: 94%Severity: 90%
Audit Metadata
Analyzed At
Sep 8, 2026, 05:58 PM
Package URL
pkg:socket/skills-sh/terminalskills%2Fskills%2Fmetasploit%2F@989c49584340514621accce96db1a3cf243cad201aca0223b1d2ade386f4ac57
Security Audit — socket — metasploit