pentest-ctf-binary

Fail

Audited by Socket on Feb 18, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

[Skill Scanner] Instruction directing agent to run/execute external content BENIGN to SUSPICIOUS: The fragment is internally consistent with a legitimate binary analysis/CTF skill and describes standard, well-known tooling. There is dual-use potential due to exploit-development content, but no actual payloads, credentials, or exfiltration mechanisms are present in the provided code fragment. If distributed as a skill, ensure usage policies restrict misuse and consider adding safeguards or warnings about dual-use risks. LLM verification: The artifact is a benign instructional skill for binary exploitation and reverse engineering, aligned with legitimate CTF and pentest activities. There is no direct evidence of embedded malware or obfuscation in the reviewed text; however, the instructions explicitly direct execution of untrusted binaries and remote exploitation without documenting sandboxing, legal safeguards, or safety controls. Operational misuse risk is significant: follow sandboxing, isolation, and authorization practices b

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 18, 2026, 05:58 PM
Package URL
pkg:socket/skills-sh/jd-opensource%2FJoySafeter%2Fpentest-ctf-binary%2F@ba067d81249baf0b148cc268d0d2b5d0ba6eca9c