servicemesh-tactics

Fail

Audited by Socket on Aug 12, 2026

2 alerts found:

MalwareSecurity
MalwareHIGH
references/attack-techniques.md

High-risk malicious content: this fragment is an offensive operational playbook for Kubernetes service-mesh (Linkerd/Istio) abuse. It includes explicit disruption (Linkerd proxy /shutdown), security-control tampering (AuthorizationPolicy deletion), sensitive control-plane/debug probing (Istiod debug/*), and credential/session-oriented log scraping plus proxy secret/config retrieval. This is consistent with malicious recon, disruption, and potential information theft. Treat as unsafe and not suitable for inclusion in any production or dependency context.

Confidence: 90%Severity: 100%
SecurityMEDIUM
SKILL.md

High-risk offensive security skill. Its stated purpose is to attack service meshes, and its capabilities are fully aligned with exploitation: secret extraction, internal recon, lateral movement, traffic interception, and security-control bypass. No strong malware proof or suspicious installer is present, but as an AI agent skill it materially enables unauthorized intrusion and high-impact real-world actions.

Confidence: 97%Severity: 96%
Audit Metadata
Analyzed At
Aug 12, 2026, 03:51 PM
Package URL
pkg:socket/skills-sh/wgpsec%2Faboutsecurity%2Fservicemesh-tactics%2F@3bb201bf6c506a57492c6dfddd99496ec609272b3594f7c44fc688c60f83105c
Security Audit — socket — servicemesh-tactics