-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'ycs' @ 3.9.9 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "sha256": "8fcf222dfcf6f0f36588b0c11a3e0fd28bac1b86cccc3eac8afb5f9243afffb7", "import_time": "2024-03-08T14:05:13.35183232Z", "versions": [ "3.9.9" ], "source": "ossf-package-analysis", "modified_time": "2024-03-08T14:02:57Z" }, { "sha256": "722ed20f76b966523eee00ef5a2eb05ab16b50b32d7f414ea3ae93792405c107", "import_time": "2024-03-15T10:04:29.851999504Z", "versions": [ "4.1.0" ], "source": "ossf-package-analysis", "modified_time": "2024-03-15T09:48:14Z" }, { "sha256": "edbbda6bb972b5dd9c246ecfa119b22ac52e4afc637a588a2c2126f17ff5e4da", "import_time": "2024-03-16T13:33:13.961802316Z", "versions": [ "4.1.1" ], "source": "ossf-package-analysis", "modified_time": "2024-03-16T13:09:29Z" } ] }