-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'internal-udfc-pkg' @ 5.5.5 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "modified_time": "2024-06-25T18:36:00Z", "import_time": "2024-06-25T19:05:21.408518925Z", "source": "ossf-package-analysis", "versions": [ "5.5.5" ], "sha256": "25708e4f5f0536339a12c9bf28e659c821359f2733ff51d193cd6d74443c3650" }, { "modified_time": "2024-06-25T18:48:12Z", "import_time": "2024-06-25T19:05:21.516360622Z", "source": "ossf-package-analysis", "versions": [ "5.5.6" ], "sha256": "d2cfbcdf083976076ca37b32be3a91cb36b9c5b9c9beb602b6369964904c1bd2" }, { "modified_time": "2024-06-25T19:15:48Z", "import_time": "2024-06-25T19:33:49.532569063Z", "source": "ossf-package-analysis", "versions": [ "5.5.7" ], "sha256": "e8e8956fbe7f64d6c3879aa7a3030ba1b085299688dc1299834fff9e7801cef8" }, { "modified_time": "2024-06-25T20:48:40Z", "import_time": "2024-06-25T21:04:51.241443785Z", "source": "ossf-package-analysis", "versions": [ "5.5.8" ], "sha256": "43d2d51866ac43fb5a060de3316792c60a9d7fdfbcd996d2a52265c09cdee30b" }, { "modified_time": "2024-06-25T20:44:42Z", "import_time": "2024-06-25T21:04:51.180012747Z", "source": "ossf-package-analysis", "versions": [ "5.5.9" ], "sha256": "88838d46d17cc336ce7d54257ef86c0369f24f86d0bb6b1fc84464a62a06e2ed" } ] }