Network 101

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

[Skill Scanner] Installation of third-party script detected All findings: [CRITICAL] command_injection: Installation of third-party script detected (SC006) [AITech 9.1.4] [CRITICAL] command_injection: Installation of third-party script detected (SC006) [AITech 9.1.4] [CRITICAL] command_injection: Installation of third-party script detected (SC006) [AITech 9.1.4] [CRITICAL] command_injection: Destructive bash command detected (rm -rf, chmod 777) (CI004) [AITech 9.1.4] [CRITICAL] command_injection: Installation of third-party script detected (SC006) [AITech 9.1.4] [CRITICAL] command_injection: Installation of third-party script detected (SC006) [AITech 9.1.4] [CRITICAL] command_injection: Installation of third-party script detected (SC006) [AITech 9.1.4] [CRITICAL] command_injection: Destructive bash command detected (rm -rf, chmod 777) (CI004) [AITech 9.1.4] This skill is consistent with its stated purpose of creating vulnerable or easily‑enumerable services for penetration testing labs. It does not contain code that exfiltrates data to third parties, obfuscated payloads, or embedded backdoors. However, it explicitly instructs insecure configurations (public/rw SNMP communities, chmod 777, anonymous writable SMB, simple login form with log parsing and brute-force examples) that pose substantial security risk if applied outside isolated lab environments. Treat this material as a lab-only playbook; do not apply these exact settings in production networks without hardening and proper access controls. LLM verification: This skill is a lab-focused instructional guide whose stated purpose matches its capabilities: it shows how to install services and run enumeration tools in a pentesting lab. It does not contain obfuscated code, remote payload fetches from suspicious domains, or obvious backdoors. However, it explicitly recommends insecure configurations (chmod 777, default SNMP communities, anonymous writable SMB) and demonstrates brute-force enumeration commands — practices that are high-risk if applied outsid

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 16, 2026, 10:21 AM
Package URL
pkg:socket/skills-sh/jpropato%2Fsiba%2Fnetwork-101%2F@0ac40e24638b4ed89ce3c6fcde87f7b8dace5fca