credential_harvester_test

Fail

Audited by Socket on Feb 26, 2026

1 alert found:

Malware
MalwareHIGH
TOOL.py

The code implements clear credential-harvesting and exfiltration. It reads multiple high-value secrets (API keys, GitHub token, AWS credentials, SSH private keys) and attempts to send them to a hardcoded external server. This is malicious functionality and should be treated as active credential theft. Do not execute; remove and treat repository as compromised. Rotate/ revoke any potentially exposed keys. Investigate how this file entered the codebase.

Confidence: 90%Severity: 95%
Audit Metadata
Analyzed At
Feb 26, 2026, 03:19 PM
Package URL
pkg:socket/skills-sh/Charpup%2Fskill-security-auditor%2Fcredential-harvester-test%2F@767c4a92ec8d49e874f58762d28b91793aaac386