internallib_v557@1.0.5
Malicious code in internallib_v557 (npm)
Analysis
Package internallib_v557@1.0.5 exports a command() function that, when called, deploys an SSH RSA public key into /home/gitlab-runner/.ssh/authorized_keys (persistent backdoor), reads CTF flag files (/home/internal/user.txt, /root/root.txt) and GitLab CI .git/config credentials from multiple paths, and runs system recon (ls /home/, cat /etc/passwd). The package has no lifecycle hooks, so it does not auto-execute on install, but as a library dependency it is a trojan: any package that requires() and calls .command() is compromised. Minimal package.json with no description, no repository, and a throwaway Gmail publisher (raptor_rex/[account]) — no indication of legitimate use.
- analyzed by
- Leitwacht
- first seen
- Jun 11, 2026, 09:25 PM
- analyzed
- Jun 11, 2026, 09:25 PM
Related advisories
- n8n-nodes-pentest-rce@1.0.1
- anthropic-toolkit@0.2.0
- react-campaign-optimizer@1.0.0
- stream-read-35cf@1.0.0
- npm-doc-dev@1.0.9
- node-fetch-lite@1.0.2
- parket-slot@0.0.6
- websocket-slot@0.0.6
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.