custom-req-on-workers was part of a campaign that attempted to exfiltrate
environmental data from the host.
The malicious crate had 1 version published in January 2025, and had no evidence of actual usage. This crate had no dependencies on crates.io.
{
"license": "CC0-1.0"
}