performing-windows-artifact-analysis-with-eric-zimmerman-tools

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is internally coherent as a Windows DFIR guide and does not show credential theft or exfiltration, but it equips an AI agent with sensitive forensic/security tooling, live system collection, and admin-level artifact access. Official-source install references lower malware concern, while the security capability itself keeps overall risk at medium.

Confidence: 81%Severity: 58%
Audit Metadata
Analyzed At
Apr 7, 2026, 01:02 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-windows-artifact-analysis-with-eric-zimmerman-tools%2F@4951411fdb6175bd176555b524e74f3e97e1eebf