This package runs commands in a pre-install script that exfils sensitive data to a attacker-controlled domain.
-= Per source details. Do not edit below this line.=-
{ "malicious-packages-origins": [ { "source": "reversing-labs", "modified_time": "2025-02-03T16:55:20Z", "versions": [ "9.9.9" ], "sha256": "ad0c1bfcc1b81c3ff624421a11abb116144274ec918e8bc0726401a04382f146", "id": "RLMA-2025-00244", "import_time": "2025-02-03T18:37:54.790302849Z" } ] }