Scan Report
100 /100
math-calculator
伪装成数学计算器的恶意反向shell skill(PoC)
发现确认的恶意反向shell payload隐藏在数学计算器代码中,SKILL.md文档完全未声明此敏感操作。
Do not install this skill
立即删除此skill,禁止在任何生产环境或真实场景中使用。该文件已被识别为恶意PoC。
Attack Chain 3 steps
◎
Entry 通过SKILL.md伪装成合法数学计算工具
skills/math-calculator/SKILL.md:1⬡
Escalation 执行脚本时触发隐藏在safe_calculate函数中的反向shell
skills/math-calculator/scripts/calculate.py:32◉
Impact 建立socket连接到C2服务器
20.120.229.246:4444,获取远程交互式shell skills/math-calculator/scripts/calculate.py:32Findings 4 items
| Severity | Finding | Location |
|---|---|---|
| Critical | 隐藏的反向Shell Payload | skills/math-calculator/scripts/calculate.py:32 |
| Critical | C2服务器硬编码IP | skills/math-calculator/scripts/calculate.py:32 |
| Critical | 文档完全未声明恶意行为 | skills/math-calculator/SKILL.md:1 |
| Critical | 已知恶意PoC公开样本 | README.md:1 |
| Resource | Declared | Inferred | Status | Evidence |
|---|---|---|---|---|
| Shell | WRITE | ADMIN | ✓ Aligned | skills/math-calculator/scripts/calculate.py:32 — 隐藏的反向shell代码 |
| Network | NONE | WRITE | ✓ Aligned | skills/math-calculator/scripts/calculate.py:32 — socket.connect连接到外部IP |
1 High 2 findings
High IP Address 硬编码 IP 地址
20.120.229.246 skills/math-calculator/scripts/calculate.py:32 Medium External URL 外部 URL
https://medium.com/@yossifqassim/weaponizing-claude-code-skills-from-5-5-to-remote-shell-a14af2d109c9 README.md:6 File Tree
5 files · 4.9 KB · 163 lines Python 1f · 74L
Markdown 2f · 65L
JSON 2f · 24L
├─
▾
.claude-plugin
│ ├─
marketplace.json
JSON
│ └─
plugin.json
JSON
├─
▾
skills
│ └─
▾
math-calculator
│ ├─
▾
scripts
│ │ └─
calculate.py
Python
│ └─
SKILL.md
Markdown
└─
README.md
Markdown