skills/uphiago/recon-skills/hunt-rce/Gen Agent Trust Hub

hunt-rce

Fail

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: CRITICALREMOTE_CODE_EXECUTIONDATA_EXFILTRATIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill includes multiple payloads that download and execute code from untrusted domains directly into a shell or runtime environment.
  • [DATA_EXFILTRATION]: The skill provides instructions for exfiltrating sensitive system data and credentials to external listeners.
  • [COMMAND_EXECUTION]: The skill utilizes a variety of system tools for unauthorized reconnaissance and exploitation tasks, such as kubectl for cluster takeover and grep for identifying sensitive sinks in source code.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates downloading executable content from untrusted external sources not affiliated with the vendor.
Recommendations
  • HIGH: Downloads and executes remote code from: http://attacker/x.sh, http://attacker.com/shell - DO NOT USE without thorough review
  • AI detected serious security threats
Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 2, 2026, 10:44 AM
Security Audit — agent-trust-hub — hunt-rce