active-directory-attacks

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS/HIGH-RISK skill. Its footprint is internally consistent with its stated purpose, but that purpose is to give an AI agent offensive AD attack capability, including credential theft, privilege escalation, persistence, and exploit execution. No clear credential-harvesting-to-attacker endpoint is shown, so this is not confirmed malware, but it is a high-risk vulnerable skill that should not be broadly enabled.

Confidence: 95%Severity: 94%
Audit Metadata
Analyzed At
Sep 17, 2026, 03:14 PM
Package URL
pkg:socket/skills-sh/zebbern%2Fclaude-code-guide%2Factive-directory-attacks%2F@5ae3cd12de7538b9c50c849e850ef8de16e2f5e2ba61f1ed69fc593f7307c0c3
Security Audit — socket — active-directory-attacks