okta-attack
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
High-risk offensive red-team skill. Its actions are internally consistent with the stated Okta attack purpose, but that purpose includes live credential attacks, MFA abuse, phishing-adjacent tactics, and post-compromise admin probing. No strong evidence of hidden malware or credential exfiltration to third-party services, but the skill meaningfully increases an AI agent’s capacity to attack real Okta tenants.
Confidence: 94%Severity: 93%
Audit Metadata