msf-oneshot

Fail

Audited by Socket on Apr 22, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md

This skill is not a normal productivity or integration skill; it is an offensive exploitation playbook for AI agents. The install provenance for Metasploit itself is mostly consistent with Rapid7, so supply-chain risk is not the main issue. The main risk is capability scope: remote exploitation, reverse shells, credential dumping, privilege escalation, and file transfer are fundamentally high-risk and enable harmful real-world actions. Overall this is a high-risk offensive security skill and should be treated as suspicious/dangerous for general agent deployment.

Confidence: 95%Severity: 96%
MalwareHIGH
evals/evals.json

This JSON fragment is an adversarial capability template that operationalizes intrusion: it provides actionable Metasploit one-liner/module guidance for SMB exploitation, reverse-shell payload generation, and database-to-OS command execution via supplied credentials and network parameters. Even without runtime code, it materially facilitates unauthorized compromise, so it represents an extremely high security/malware misuse risk.

Confidence: 86%Severity: 100%
Audit Metadata
Analyzed At
Apr 22, 2026, 08:00 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fmsf-oneshot%2F@dfae173daafd9b46d76edbf4d7c078f009b78bbb