vmware-vcenter-attack

Warn

Audited by Socket on Jul 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is internally consistent with its stated red-team purpose, but that purpose is to help an AI agent attack internet-exposed VMware infrastructure, including pre-auth RCE and privileged post-compromise actions. There is no clear credential-harvesting proxy or hidden exfiltration, and most referenced tools are official, so this is not confirmed malware; however, it is a high-risk offensive security skill that materially increases the agent's ability to compromise real systems.

Confidence: 92%Severity: 86%
Audit Metadata
Analyzed At
Jul 31, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/uphiago%2Frecon-skills%2Fvmware-vcenter-attack%2F@55684a8916828168a0b1a3f0150dac676b0ac66c3972ca0288d3d45c32640d6a
Security Audit — socket — vmware-vcenter-attack