Back to skill

Security audit

aweseed-sdwan

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward setup guide for AweSeed SD-WAN, with no hidden execution or deceptive behavior found.

Install this only for devices you trust to share an SD-WAN environment. Avoid mixing personal, corporate, and industrial systems without approval, use a strong Oray account password and MFA if available, and remove or revoke access for devices that are lost, retired, or no longer trusted.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (4)

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
88% confidence
Finding

The README instructs users to sign in on multiple devices with the same account to enable automatic cross-site networking, but it does not warn that this effectively places those devices into a shared trust boundary. Users may unknowingly expose internal services, broaden lateral movement opportunities if one endpoint is compromised, or link personal and enterprise assets without understanding the security and privacy consequences.

Content

No source excerpt is available for this finding.

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
90% confidence
Finding

The skill encourages joining personal, office, and industrial devices into the same SD-WAN fabric and describes automatic cross-site networking, but it does not warn that devices under one Oray account may gain broad reachability to each other. In mixed-trust environments, this can lead to unintended lateral access, exposure of sensitive systems, and privacy leakage if users connect devices that should remain isolated.

Content

No source excerpt is available for this finding.

Sudo/Root Execution

Medium
Category
Privilege Escalation
Confidence
70% confidence
Finding

Commands invoke sudo or root privileges. Verify this elevated access is necessary and justified.

Content

Scanner excerpt · SKILL.md (reported line 131)May include surrounding context.

md
### `sudo` Boundary

On macOS, do not get stuck retrying `sudo installer` when the flow requires the user's administrator password.

- If the package is already downloaded, prefer `open <pkg>` and let the user complete the protected GUI installer prompts.
- Treat OS password entry as a user-owned step unless interactive control is explicitly available.

Missing User Warnings

Low
Category
Not specified by scanner
Confidence
84% confidence
Finding

The account setup steps direct users to register and sign in to a cloud-managed remote connectivity service without any warning about account security, credential handling, or the consequences of account compromise. Because all enrolled devices are tied to the same account context, weak authentication or account sharing could expose multiple systems to unauthorized remote access.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.