The package contains code to exfiltrate user and host information to an oastify domain.
-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'jqtools-toolbox-expose' @ 69.69.69 (npm) as malicious.
It is considered malicious because:
{
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"modified_time": "2024-07-22T14:11:20Z",
"versions": [
"69.69.69"
],
"import_time": "2024-07-22T14:34:36.963056287Z",
"sha256": "cf8ecc5384976555e101e147d0456707c86467e52647ed0bdbc91bc47639356a"
},
{
"source": "ossf-package-analysis",
"modified_time": "2024-07-24T12:51:02Z",
"versions": [
"70.69.69"
],
"import_time": "2024-07-24T13:07:24.093520824Z",
"sha256": "cef84c4fc127d96b90177e4ac442505ddc24484dec5537004743f0ccca43208f"
}
]
}