vmware-vcenter-attack
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is internally consistent with its stated red-team purpose, but that purpose is to help an AI agent attack internet-exposed VMware infrastructure, including pre-auth RCE and privileged post-compromise actions. There is no clear credential-harvesting proxy or hidden exfiltration, and most referenced tools are official, so this is not confirmed malware; however, it is a high-risk offensive security skill that materially increases the agent's ability to compromise real systems.
Confidence: 92%Severity: 86%
Audit Metadata