password-spray-methodology
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally coherent as a red-team password spraying methodology, but its actual footprint is a high-risk offensive credential-attack guide for AI agents. It enables enumeration, authentication attacks, account validation, and chaining into post-compromise actions across many services; this is not confirmed malware, but it is dangerous and should be treated as a high-risk offensive-security skill.
Confidence: 93%Severity: 90%
Audit Metadata