sqlserver-attack

Fail

Audited by Socket on Aug 12, 2026

2 alerts found:

SecurityMalware
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK offensive skill. The content is internally consistent with a penetration/exploitation purpose, but that purpose is itself dangerous for an AI agent: it enables credential attacks, remote command execution, data theft, persistence, and lateral movement against SQL Server targets. No strong malware/exfiltration-to-attacker endpoint is shown, but the skill clearly provides operational attack capability and should be treated as high security risk.

Confidence: 96%Severity: 97%
MalwareHIGH
references/attack-techniques.md

该代码片段不是正常的软件依赖实现,而是面向 SQL Server 的可操作攻击/后渗透指令集合:包含 xp_cmdshell 与 OLE Automation 的 RCE、敏感文件读取(BULK INSERT/OPENROWSET)、webshell 写入、SQL Agent 持久化、CLR UNSAFE 恶意程序集加载、以及创建 sysadmin 后门账号等。整体符合恶意利用/持久化与数据窃取链路的典型模式,安全风险极高。

Confidence: 90%Severity: 98%
Audit Metadata
Analyzed At
Aug 12, 2026, 03:52 PM
Package URL
pkg:socket/skills-sh/wgpsec%2Faboutsecurity%2Fsqlserver-attack%2F@77e06e23efc37148a57bef036b62f6deb0abdca1385d1264e0531873b9df9d8a
Security Audit — socket — sqlserver-attack