LWA-2026-12201 MAL-2026-16433 ↗ confirmed malware

@vitemirrorte/element-plus-vite-cli@2.9.1

Malicious code in @vitemirrorte/element-plus-vite-cli (npm)

T1195.002 · Compromise Software Supply ChainT1059.007 · JavaScriptT1059 · Command and Scripting InterpreterT1082 · System Information DiscoveryT1071.001 · Web ProtocolsT1102 · Web ServiceT1105 · Ingress Tool TransferT1041 · Exfiltration Over C2 Channel

Analysis

The postinstall hook of this scoped package (a combosquat of the element-plus-vite-cli tool) checks whether the installing project matches a hardcoded target workspace (package name mall4cloud-react with exact content digests). When it matches, the hook decrypts an AES-256-GCM-encrypted agent runtime (key derived from the workspace fingerprint) and launches it as a detached background process under ~/.gradle/caches/transforms-3/8.7/instrumented/.../instrumentation-agent-runtime.mjs. The agent registers the host (hostname, username, OS) to hxxps://npmjs[.]it[.]com/api/register, then polls hxxps://npmjs[.]it[.]com/api/task/{agentId} every ~5s for commands. It supports arbitrary shell execution (exec), directory listing (ls), file exfiltration to hxxps://npmjs[.]it[.]com/api/file/{agentId}/{taskId}, file upload/write, file deletion, process listing, and file moves. The C2 base URL can be overridden via the C2_SERVER_URL environment variable.

analyzed by
Leitwacht
first seen
Sep 17, 2026, 09:35 AM
analyzed
Sep 17, 2026, 09:36 AM

Related advisories

browse all confirmed advisories →

Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.