multi-layer-network

Fail

Audited by Socket on Apr 22, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK: the skill is internally coherent, but its stated purpose is offensive multi-hop network intrusion and pivoting. It enables an AI agent to perform penetration actions, create covert tunnels, scan internal networks, and chain into additional attack skills. Supply-chain trust is mixed because several external tools are referenced without pinned, verified installation guidance, though the stronger concern is the deliberate offensive capability itself.

Confidence: 91%Severity: 93%
MalwareHIGH
references/tunnel-tools.md

This content provides highly actionable offensive guidance to establish attacker-controlled SOCKS/port-forwarding tunnels (including webshell-based HTTP tunneling) and to run scanning/remote-execution tooling through those pivots. If such guidance appears in a software supply-chain context, it represents a strong malicious-intent signal and a high risk of enabling unauthorized access and internal compromise.

Confidence: 83%Severity: 100%
Audit Metadata
Analyzed At
Apr 22, 2026, 08:00 AM
Package URL
pkg:socket/skills-sh/wgpsec%2FAboutSecurity%2Fmulti-layer-network%2F@f563b4246755ab8e0c73a57dd870a2a1ac31bb0b
Security Audit — socket — multi-layer-network