exploiting-cloud-platforms
Audited by Socket on Sep 16, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS. The offensive purpose aligns with the exploitation capabilities, so the issue is not hidden intent but scope and trust: the skill meaningfully enables cloud privilege escalation, secret retrieval, and metadata-token abuse, and it references several unverifiable third-party tools without provenance. No clear credential exfiltration endpoint is shown, but credential forwarding to external offensive tooling and high-impact cloud actions make this a high-risk skill.
This is dual-use Azure security and exploitation documentation. It presents commands that can expose cloud inventory, stored data, secrets, and managed-identity tokens when executed with access, and it includes an insecure plaintext command-line credential example. The fragment contains no executable malware, persistence, covert exfiltration, or package-install behavior; risk derives from the documented capabilities and potential unauthorized use.