copyfail-go-lpe

Warn

Audited by Socket on May 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

High-risk offensive skill. Its stated purpose matches its behavior, but that behavior is to deliver an LPE exploit, obtain root, and restore evidence afterward. The raw binary download from a different org without shown checksums adds supply-chain risk; overall this should be treated as a dangerous exploit skill, not benign tooling.

Confidence: 94%Severity: 96%
Audit Metadata
Analyzed At
May 2, 2026, 01:43 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Fcopyfail-go-lpe%2F@3bb87fdffeacb2cf04a6989141d220c18f0abc63