abusing-adcs

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent as an AD CS attack playbook, but its actual purpose is to equip an AI agent with offensive identity-compromise capabilities. The main risk is not hidden exfiltration; it is deliberate exploitation, persistence, and credential abuse using partially unpinned third-party tooling.

Confidence: 93%Severity: 92%
Audit Metadata
Analyzed At
Jul 30, 2026, 01:17 AM
Package URL
pkg:socket/skills-sh/trilwu%2Fsecskills%2Fabusing-adcs%2F@6d2a48085fcfc92b2f78b4bb0e78bd74bc08408717783973c0d38fe972d2cf59
Security Audit — socket — abusing-adcs