competition-reverse-pwn

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for a CTF reverse/pwn sandbox role, but it grants an AI agent high-risk offensive security capabilities and relies on unverified internal skill chaining. No explicit credential theft, exfiltration endpoint, or malicious installer appears in the provided text, so this is high-risk security functionality rather than confirmed malware.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
Mar 31, 2026, 12:17 PM
Package URL
pkg:socket/skills-sh/GALIAIS%2FCTF-Sandbox-Orchestrator%2Fcompetition-reverse-pwn%2F@2b305370b0bb2105ddfaa925ccb9e2650ea4fd18