biklitool@1.1.11
Malicious code in biklitool (npm)
Analysis
The package's postinstall hook enables Remote Desktop on port 3389, opens inbound firewall rules, disables Network Level Authentication, and enables full RDP shadowing without permission. It then creates a hidden local administrator account (the built-in Administrator, or a new 'admin'/'user' account) using a hardcoded administrator password shipped in the package's config.json, and hides the account from the Windows sign-in screen. The configured credentials are also written to %ProgramData%\BikliWrapper\admin-credentials.json. Installing the package leaves the machine with a hidden admin account whose password is publicly known and Remote Desktop exposed with authentication weakened, providing persistent remote access with known credentials.
- analyzed by
- Leitwacht
- first seen
- Aug 14, 2026, 08:07 AM
- analyzed
- Aug 14, 2026, 08:08 AM
Related advisories
- @biklitime/biklimaster@1.1.6
- gpt-terminal-cli@1.0.0
- stellarfixer@1.0.0
- web3-token-helper@1.1.3
- xeiko-cdn@1.0.0
- meualelo@99.0.2
- notafollower1226@1.0.0
- alelo-auth@99.0.2
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.