hunt-ntlm-info

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally consistent as a red-team reconnaissance tool, but that stated purpose itself gives an AI agent offensive security capability against arbitrary internet targets. There is no clear malware or credential-harvesting of the user, yet the skill meaningfully increases attack capability and includes disabled TLS verification in executable guidance.

Confidence: 93%Severity: 86%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fhunt-ntlm-info%2F@b7349cf1bf6f91a7dbcc788ddab430277243c7351042553b34ff4b919392a810
Security Audit — socket — hunt-ntlm-info