MAL-2024-11932
Dashboard / Malicious Package / MAL-2024-11932
MAL-2024-11932
Published: 18 Dec 2024Last Modified: 2 Jan 2025
Summary: Malicious code in bs-auto-dark-mode (npm)
Details: This package has a preinstall script to download an execute a Go-variant of the Cobalt Strike beacon. Source: ossf-package-analysis (8a5c6958e14a49e20ebdd6902cdb4cad7872983ed4d39e94b625cc50a20314ac) The OpenSSF Package Analysis project identified 'bs-auto-dark-mode' @ 1.0.0 (npm) as malicious. It is considered malicious because: - The package executes one or more commands associated with malicious behavior.
References:
Affected packages
Package
Name: bs-auto-dark-mode
Purl: pkg:npm/bs-auto-dark-mode
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
1.0.0
1.0.2
1.0.1
