MAL-2026-2416
Dashboard / Malicious Package / MAL-2026-2416
MAL-2026-2416
Published: 24 Mar 2026Last Modified: 7 Apr 2026
Summary: Malicious code in oc-ccp-module-client (npm)
Details: Malware due to hex obfuscation, suspicious install script, dynamic module loading, OS command access, process object access, and untrustworthy project. Source: amazon-inspector (b2b4b9cee1369c441aa8d759bc04085a8e2b14786df20656a8c6bc249e626087) The package oc-ccp-module-client was found to contain malicious code.
Affected packages
Package
Name: oc-ccp-module-client
Purl: pkg:npm/oc-ccp-module-client
Affected ranges
Type: SEMVER
Events:
Introduced- 0
Fixed -None
