okta-attack

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

High-risk offensive red-team skill. Its actions are internally consistent with the stated Okta attack purpose, but that purpose includes live credential attacks, MFA abuse, phishing-adjacent tactics, and post-compromise admin probing. No strong evidence of hidden malware or credential exfiltration to third-party services, but the skill meaningfully increases an AI agent’s capacity to attack real Okta tenants.

Confidence: 94%Severity: 93%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fokta-attack%2F@71a31f7955075475a34056b488254178df5d00f298aeaacc0f375ad0f15bf799
Security Audit — socket — okta-attack