skills/mukul975/anthropic-cybersecurity-skills/performing-active-directory-compromise-investigation/Snyk
performing-active-directory-compromise-investigation
Warn
Audited by Snyk on Apr 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill instructs the agent to perform privileged, state-changing AD actions (NTDS.dit extraction, DCSync/Mimikatz use, rotating krbtgt, resetting passwords, removing privileged members, rebuilding DCs) that require elevated privileges and modify system/domain state and could be misused.
Issues (1)
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata