This package runs commands in a pre-install script that exfils sensitive data to a attacker-controlled domain.
-= Per source details. Do not edit below this line.=-
{ "malicious-packages-origins": [ { "versions": [ "1.0.0", "1.0.1" ], "modified_time": "2025-02-03T16:47:21Z", "source": "reversing-labs", "sha256": "be8a50a940c448623e00bbf98db542060435aaae7666bbc2e5b9de9d17d94a7d", "id": "RLMA-2025-00073", "import_time": "2025-02-03T18:37:46.618716424Z" } ] }