detecting-t1055-process-injection-with-sysmon

Pass

Audited by Socket on Apr 18, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Apr 18, 2026, 04:43 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fdetecting-t1055-process-injection-with-sysmon%2F@6a08747fb66b224cb791e9438d7d88ca0ac801a1