ai-threat-testing

Warn

Audited by Socket on Apr 20, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
reference/llm10-logging-bypass.md

No runnable code is provided in this fragment, so direct malware behavior cannot be confirmed. However, the content is an explicit adversarial testing/evasion and forensic-impairment playbook (including log/evidence manipulation tactics and “undetected attack” success criteria). This represents a meaningful supply-chain and misuse risk: the module appears designed to help bypass detection rather than to implement defensive monitoring.

Confidence: 72%Severity: 65%
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally consistent as an offensive AI pentesting framework, but it equips an AI agent with high-risk exploit and security testing capabilities against real targets. The main concern is not hidden exfiltration in the excerpt; it is that the skill enables autonomous offensive actions, system prompt extraction, model theft testing, privilege escalation, and logging bypass. Because this is a security/exploit tool for an AI agent, overall risk is high even without explicit malicious infrastructure.

Confidence: 89%Severity: 86%
Audit Metadata
Analyzed At
Apr 20, 2026, 11:12 PM
Package URL
pkg:socket/skills-sh/transilienceai%2Fcommunitytools%2Fai-threat-testing%2F@257a3a1a252064191594ff26195066e854f6d85a