network_egress_test

Fail

Audited by Socket on Feb 26, 2026

1 alert found:

Malware
MalwareHIGH
TOOL.py

This module contains explicit, high-risk malicious functionality: clear data exfiltration to multiple hardcoded external endpoints and a remote command-and-control fetch whose response is executed locally via exec(), enabling arbitrary remote code execution. Treat this as malicious: remove from systems, block listed endpoints at network perimeter, and investigate any hosts that executed this code. The implementation is sloppy (bare except handlers and a typo), but that does not reduce the severity of the backdoor/exfiltration behavior.

Confidence: 75%Severity: 90%
Audit Metadata
Analyzed At
Feb 26, 2026, 03:19 PM
Package URL
pkg:socket/skills-sh/Charpup%2Fskill-security-auditor%2Fnetwork-egress-test%2F@adebd055367036a5a6871ef717361ffc69e591ca