The package adobe-alloy-mini-site was found to contain malicious code.
-= Per source details. Do not edit below this line.=-
This package installs a dependency hosted on a custom domain that runs an info stealer during installation. The info stealer focuses on stealing npm, git, and other CI/CD related tokens.
{
"malicious-packages-origins": [
{
"id": "RLMA-2025-04913",
"import_time": "2025-09-26T11:05:45.034308042Z",
"sha256": "8c95a9e2db5b57105d60395cd2856d366b31bf3e1fab72926d75505efa6abcd7",
"source": "reversing-labs",
"modified_time": "2025-09-26T09:20:18Z",
"versions": [
"99.0.0"
]
},
{
"import_time": "2025-10-30T03:28:38.522269Z",
"sha256": "d728d9b200c3b58899afcf6beb561ec60882028a3368ade745710195d969df22",
"source": "google-open-source-security",
"modified_time": "2025-10-30T03:28:23Z",
"versions": [
"99.0.0"
]
},
{
"id": "RLUA-2025-05677",
"import_time": "2025-12-02T09:10:01.094470817Z",
"sha256": "b7402ea0fa9b179ac4a510804bb7dc1133bd8ae6d35c95d7f08f72655afc78c9",
"source": "reversing-labs",
"modified_time": "2025-12-01T12:59:25Z"
}
]
}