LWA-2026-12662 MAL-2026-17620 ↗ confirmed malware

dzyclutch-baileys@1.1.21

Malicious code in dzyclutch-baileys (npm)

T1195.002 · Compromise Software Supply ChainT1059 · Command and Scripting InterpreterT1059.007 · JavaScript

Analysis

dzyclutch-baileys is a combosquat on the baileys WhatsApp Web API library: it ships a cloned copy of the baileys source tree (same dependency set, same "Advanced WhatsApp Web API Library" description, same lib/ layout) under a prefixed name, with an install-time payload added. Its package.json declares a preinstall hook, "node ./engine-requirements.js", which executes a bundled script as soon as the package is installed — before any application code runs. The dependency tree is also tampered with: the core libsignal dependency is aliased to a same-publisher package ("libsignal": "npm:dzyclutch-libsignal-node"), pulling attacker-controlled code into the installer's dependency graph. The package also depends on packages previously used in malicious publishes (@cacheable/node-cache, cache-manager). Eleven versions were published in a burst. The published tarballs are no longer retrievable from the registry, so the contents of engine-requirements.js and the aliased libsignal package could not be read; no network endpoint, dropped-file path or credential target can be stated for this version. Installers of any dzyclutch-baileys or @diezyclutch/baileys version should treat the host as potentially compromised and rotate npm and repository credentials.

analyzed by
Leitwacht
first seen
Oct 3, 2026, 10:03 PM
analyzed
Oct 8, 2026, 11:11 AM

Related advisories

browse all confirmed advisories →

Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.