sqlserver-attack
Fail
Audited by Socket on Aug 12, 2026
2 alerts found:
SecurityMalwareSecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK offensive skill. The content is internally consistent with a penetration/exploitation purpose, but that purpose is itself dangerous for an AI agent: it enables credential attacks, remote command execution, data theft, persistence, and lateral movement against SQL Server targets. No strong malware/exfiltration-to-attacker endpoint is shown, but the skill clearly provides operational attack capability and should be treated as high security risk.
Confidence: 96%Severity: 97%
Malwarereferences/attack-techniques.md
HIGHMalwareHIGH
references/attack-techniques.md
该代码片段不是正常的软件依赖实现,而是面向 SQL Server 的可操作攻击/后渗透指令集合:包含 xp_cmdshell 与 OLE Automation 的 RCE、敏感文件读取(BULK INSERT/OPENROWSET)、webshell 写入、SQL Agent 持久化、CLR UNSAFE 恶意程序集加载、以及创建 sysadmin 后门账号等。整体符合恶意利用/持久化与数据窃取链路的典型模式,安全风险极高。
Confidence: 90%Severity: 98%
Audit Metadata