This package runs commands in a pre-install script that exfils sensitive data to a attacker-controlled domain.
-= Per source details. Do not edit below this line.=-
{
"malicious-packages-origins": [
{
"import_time": "2025-02-03T18:37:46.545688973Z",
"sha256": "6234688db6998162f2837423f3257308203de85c5985a14e6365e242ee3e1701",
"modified_time": "2025-02-03T16:47:20Z",
"source": "reversing-labs",
"id": "RLMA-2025-00072",
"versions": [
"1.0.0"
]
}
]
}