Zabbix

Security checks across malware telemetry and agentic risk

Overview

This looks like a legitimate Zabbix integration, but it gives an agent broad authenticated access that can change or delete monitoring resources without clear safeguards.

Install only if you trust Membrane and intend to delegate Zabbix access through it. Use a least-privilege or read-only Zabbix account where possible, review any raw proxy request before it runs, and require explicit approval for create, update, delete, disable, or bulk operations.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill explicitly exposes a generic proxy request mechanism that supports destructive HTTP verbs such as PUT, PATCH, and DELETE, but it provides no guidance to require user confirmation or to limit those operations to clearly authorized tasks. In an agent setting, this increases the chance of unintended state-changing or destructive actions against a Zabbix instance, especially because the proxy can bypass safer, pre-defined actions.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal