@cognition-ai/cli-linux-arm64@3000.6.11
Malicious code in @cognition-ai/cli-linux-arm64 (npm)
Analysis
@cognition-ai/cli-linux-arm64@3000.6.11 is a combosquat package impersonating the Cognition AI Devin CLI scope. It ships a single 153MB native binary at bin/devin with no source and no lifecycle hooks. The package name and version (3000.6.11) are designed to be mistaken for the legitimate Devin CLI distribution, and the binary embeds strings referencing Cognition's internal build registry (pkg.cognition.build) and devinenterprise[.]com to appear authentic. Installing it places an unverifiable native executable on the system under the trusted Devin CLI name.
- analyzed by
- Leitwacht
- first seen
- Sep 2, 2026, 03:45 AM
- analyzed
- Sep 2, 2026, 03:49 AM
Related advisories
- tailwindcss-3d-styles@1.2.2
- grafeno-webhook@1.0.0
- grafeno-products-wrapper@999.0.0
- dsh-tauri-panel-extension@0.4.0
- omniauth-recharge-rails-example@1.0.0
- hydration-vli-ui@1.0.0
- bamru@1.0.0
- r4wk-book@2.2.2
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.