ldap-pentesting

Warn

Audited by Socket on Aug 12, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

该 Skill 与其“LDAP 渗透测试”目的基本一致,但其能力本身是高风险的进攻性安全自动化:包含凭据攻击、MITM、注入、目录写入、本地敏感配置/数据库读取和后渗透步骤。未见明确隐蔽外传或伪装分发,因此更像高风险攻击技能而非确认恶意软件。

Confidence: 95%Severity: 90%
SecurityMEDIUM
references/ldap-techniques.md

This fragment is an offensive AD/LDAP attack playbook. It provides explicit instructions and payloads for LDAP injection, Kerberos credential attacks (Kerberoasting/AS-REP roasting), reconnaissance (including BloodHound), and local extraction/cracking workflows using sensitive materials (keytab and LDAP backend files). While it does not demonstrate covert supply-chain malware mechanics (e.g., hidden exfiltration/persistence/obfuscation) because it is not actual dependency code, including such content in a distributed package or automation would constitute a high security risk because it substantially facilitates unauthorized access and credential theft.

Confidence: 70%Severity: 95%
Audit Metadata
Analyzed At
Aug 12, 2026, 03:53 PM
Package URL
pkg:socket/skills-sh/wgpsec%2Faboutsecurity%2Fldap-pentesting%2F@2079cc06c66fe89748df1ed1e696017412fe5438c17c6efe512e4d3433c39ba1
Security Audit — socket — ldap-pentesting