This package runs commands in a pre-install script that exfils sensitive data to a attacker-controlled domain.
-= Per source details. Do not edit below this line.=-
{
"malicious-packages-origins": [
{
"sha256": "55ef2d38f09f6507758c43cdb6fbb82b86b4707bbf5565a35823c5d775307354",
"import_time": "2025-02-03T18:37:45.692829224Z",
"modified_time": "2025-02-03T16:44:06Z",
"source": "reversing-labs",
"versions": [
"3.0.0"
],
"id": "RLMA-2025-00056"
}
]
}