ctf-solver

Warn

Audited by Socket on Oct 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for CTF use, but it deliberately equips an AI agent to conduct exploitation against network targets and optionally leverage offensive tools. There is no clear credential theft, hidden exfiltration, or malicious install path, so this is not confirmed malware; the main concern is high-risk offensive capability and semi-autonomous exploit behavior.

Confidence: 92%Severity: 84%
Audit Metadata
Analyzed At
Oct 2, 2026, 11:54 AM
Package URL
pkg:socket/skills-sh/zebbern%2Ftermstack%2Fctf-solver%2F@f2c7a996aeeae94b5fb3b0f0faa82c987bb4f8678515f846c1727abf057afcc1
Security Audit — socket — ctf-solver