k8s-webhook-abuse

Fail

Audited by Socket on Apr 22, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

MALICIOUS. The skill is fundamentally an offensive exploit playbook for abusing Kubernetes admission webhooks to extract secrets and validate exploitable conditions. Its capabilities, target selection, TLS-bypass guidance, and secret-recovery workflow are incompatible with a benign cluster-management purpose.

Confidence: 97%Severity: 96%
Audit Metadata
Analyzed At
Apr 22, 2026, 10:10 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fk8s-webhook-abuse%2F@98d1aad7e63d18a1c82805c3310f22459cf8f680