unauthorized-access-common-services

Warn

Audited by Socket on Apr 10, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
PORT_SERVICE_MATRIX.md

This fragment functions as an offensive exploitation cheat sheet rather than benign software code. It contains concrete, copy-pastable instructions for enumeration, brute force, server-side command execution, webshell/WAR payload deployment, and lateral-movement-style operations across many network services. As shipped content in a supply chain, it would significantly raise misuse impact, even though it does not appear to be executable malware itself in this snippet.

Confidence: 80%Severity: 90%
SecurityMEDIUM
SKILL.md

The skill directly instructs theft of remote files, SSH key planting, rsync looting, webshell deployment, and reverse-shell callbacks. These outbound flows are central to the skill's purpose and clearly enable unauthorized data access and exfiltration.

Confidence: 98%Severity: 96%
Audit Metadata
Analyzed At
Apr 10, 2026, 04:59 AM
Package URL
pkg:socket/skills-sh/yaklang%2Fhack-skills%2Funauthorized-access-common-services%2F@70d9e07703461667bbc2ed7248430f6e36260964