@polymarkets/clob-client-v2@1.0.6
Malicious code in @polymarkets/clob-client-v2 (npm)
Analysis
The package `@polymarkets/clob-client-v2` (a combosquat of the legitimate `@polymarket/clob-client`) declares its `inquirer` dependency as a direct tarball URL hosted on `hxxps://registrynpmjs[.]to/inquirer-14[.]0[.]2[.]tgz`. `registrynpmjs.to` is a typosquat of the official npm registry host `registry[.]npmjs[.]org`; installing this package causes npm to download and execute the `inquirer` dependency from that attacker-controlled lookalike registry domain rather than the official registry. The bundled client code itself is a standard Polymarket CLOB API client with no install hooks, but the dependency redirect means the attacker controls the code that runs when the package is installed and used.
- analyzed by
- Leitwacht
- first seen
- Aug 8, 2026, 11:11 PM
- analyzed
- Aug 8, 2026, 11:11 PM
Related advisories
- @devmikets/hyperliquid-sdk@1.9.6
- kit-map-streak@1.0.0
- wsallin@1.0.0
- @opezneppelin/contracts@5.0.2
- @rblxts/services@1.6.0
- @ethers-js/contracts@6.9.0
- @solana-js/web3@1.91.3
- @reducers/projects@99.9.1
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.