Back to skill

Security audit

Go Vuln Info Disclosure

Security checks for vulnerabilities and agentic risk

Overview

This is a Markdown-only Go security-auditing skill with some broad example cases, but it does not install code, persist, collect credentials, or run hidden actions.

Install this only if you want Chinese-language guidance for auditing Go information-disclosure issues. Treat the reference cases as defensive review examples, and avoid using the broader auth-bypass or RCE-adjacent material outside an authorized security review.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (9)

Credential Access

High
Category
Privilege Escalation
Confidence
60% confidence
Finding

Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.

Content

Scanner excerpt · SKILL.md (reported line 70)May include surrounding context.

md
### Case 2: Argo CD -- Cluster Secret 在日志中泄露 (CVE-2024-28175, CVSS 9.9)

**Root Cause**: Argo CD 在 cluster details 页面/API 中暴露了 cluster secret(包含 kubeconfig 和 bearer token),且在日志中以 `%+v` 格式化输出了完整的 cluster 对象。

**Source -> Sink 路径**:
- **Source**: K8s Secret 中存储的 cluster kubeconfig / bearer token

Credential Access

High
Category
Privilege Escalation
Confidence
60% confidence
Finding

Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.

Content

Scanner excerpt · SKILL.md (reported line 85)May include surrounding context.

md
### Case 2: Argo CD -- Cluster Secret 在日志中泄露 (CVE-2024-28175, CVSS 9.9)

**Root Cause**: Argo CD 在 cluster details 页面/API 中暴露了 cluster secret(包含 kubeconfig 和 bearer token),且在日志中以 `%+v` 格式化输出了完整的 cluster 对象。

**Source -> Sink 路径**:
- **Source**: K8s Secret 中存储的 cluster kubeconfig / bearer token

Credential Access

High
Category
Privilege Escalation
Confidence
60% confidence
Finding

Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.

Content

Scanner excerpt · references/cases.md (reported line 47)May include surrounding context.

md
### Case 2: Argo CD -- Cluster Secret 在日志中泄露 (CVE-2024-28175, CVSS 9.9)

**Root Cause**: Argo CD 在 cluster details 页面/API 中暴露了 cluster secret(包含 kubeconfig 和 bearer token),且在日志中以 `%+v` 格式化输出了完整的 cluster 对象。

**Source -> Sink 路径**:
- **Source**: K8s Secret 中存储的 cluster kubeconfig / bearer token

Credential Access

High
Category
Privilege Escalation
Confidence
60% confidence
Finding

Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.

Content

Scanner excerpt · references/cases.md (reported line 50)May include surrounding context.

md
### Case 2: Argo CD -- Cluster Secret 在日志中泄露 (CVE-2024-28175, CVSS 9.9)

**Root Cause**: Argo CD 在 cluster details 页面/API 中暴露了 cluster secret(包含 kubeconfig 和 bearer token),且在日志中以 `%+v` 格式化输出了完整的 cluster 对象。

**Source -> Sink 路径**:
- **Source**: K8s Secret 中存储的 cluster kubeconfig / bearer token

Credential Access

High
Category
Privilege Escalation
Confidence
60% confidence
Finding

Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.

Content

Scanner excerpt · references/cases.md (reported line 222)May include surrounding context.

text

**Attack Path**:
1. 发送 HTTP 请求 `GET /../../../etc/passwd`
2. Server 拼接路径并通过 `http.ServeFile` 返回
3. 读取服务器配置或收集到的安全测试数据

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
95% confidence
Finding

The skill content switches into Chinese for the operative instruction text, telling the auditor when to load the skill, but it does not offer any language choice or explain a locale-specific requirement. This can violate language/locale policy because it imposes a specific language on users without opt-in.

Content

No source excerpt is available for this finding.

Description-Behavior Mismatch

Medium
Category
Not specified by scanner
Confidence
96% confidence
Finding

The skill is scoped as Go information disclosure, but this reference file includes authentication bypass and file-deletion/RCE cases that materially expand the operational attack knowledge conveyed by the skill. This creates scope drift that can mislead downstream agents or users into applying the skill outside its declared safety boundaries, increasing the chance of unsafe or overbroad security guidance.

Content

No source excerpt is available for this finding.

Description-Behavior Mismatch

Medium
Category
Not specified by scanner
Confidence
91% confidence
Finding

The file adds arbitrary file-read and path traversal examples, which go beyond the stated disclosure categories of logging, error handling, HTTP response data, secret management, and credential storage. Even as reference material, including out-of-scope exploitation patterns broadens the skill's capability envelope and can cause agents to surface attack guidance not justified by the declared purpose.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
94% confidence
Finding

This markdown file presents its core description entirely in Chinese ('7 个真实 Go 信息泄露漏洞案例...') while the surrounding auditing context is otherwise language-agnostic. Under the policy, forcing a specific language without user opt-in can be a natural-language policy violation when no justification or alternative is provided.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.