Offensive Security Skill
Fail
Audited by Snyk on Feb 16, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 1.00). This skill explicitly documents offensive/malicious capabilities — credential harvesting, custom C2 channels, generating evasive payloads/implants, phishing, lateral movement and remote-execution tools — which present clear high-risk patterns for data exfiltration, backdoors, credential theft and system compromise.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill explicitly directs the agent to execute offensive tooling, generate payloads, and set up C2/payload infrastructure (actions that create files, run services, and likely modify system state), so it pushes the agent toward compromising the host.
Audit Metadata