Multiple evidences indicate malicious behaviors: data exfiltration, sensitive file access, obfuscated code, and suspicious network connections.
-= Per source details. Do not edit below this line.=-
The package df-sandbox-test was found to contain malicious code.
{
"malicious-packages-origins": [
{
"source": "amazon-inspector",
"import_time": "2026-04-07T14:39:07.563032925Z",
"sha256": "97761ee82976dcee2c3d8438258e8ace733bec2d2c7e1020035e9e390f9fa02f",
"modified_time": "2026-04-07T14:24:50Z",
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "SEMVER"
}
]
}
]
}