skills/mukul975/anthropic-cybersecurity-skills/exploiting-server-side-request-forgery/Gen Agent Trust Hub
exploiting-server-side-request-forgery
Pass
Audited by Gen Agent Trust Hub on Mar 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Recommends the use of reputable security tools such as interactsh and SSRFmap from their respective GitHub repositories.
- [COMMAND_EXECUTION]: Provides a Python script (scripts/agent.py) and various curl commands to facilitate network-based security testing against user-defined targets.
- [DATA_EXFILTRATION]: Includes functionality to detect the exposure of cloud metadata and internal system files on a target server, which is the intended purpose of the vulnerability assessment tool.
- [SAFE]: No malicious behavior or unauthorized data collection from the agent's environment was detected.
Audit Metadata