multi-layer-network
Audited by Socket on Apr 22, 2026
2 alerts found:
SecurityMalwareSUSPICIOUS/HIGH-RISK: the skill is internally coherent, but its stated purpose is offensive multi-hop network intrusion and pivoting. It enables an AI agent to perform penetration actions, create covert tunnels, scan internal networks, and chain into additional attack skills. Supply-chain trust is mixed because several external tools are referenced without pinned, verified installation guidance, though the stronger concern is the deliberate offensive capability itself.
This content provides highly actionable offensive guidance to establish attacker-controlled SOCKS/port-forwarding tunnels (including webshell-based HTTP tunneling) and to run scanning/remote-execution tooling through those pivots. If such guidance appears in a software supply-chain context, it represents a strong malicious-intent signal and a high risk of enabling unauthorized access and internal compromise.