atlassian-forge-skills@29.1.0
Malicious code in atlassian-forge-skills (npm)
Analysis
Package `atlassian-forge-skills` combosquats the official Atlassian Forge SDK. The `preinstall` lifecycle hook runs `index.js`, which uses `os.hostname()` to read the installer's machine hostname, constructs the domain `{hostname}.zcagyqqmvnmgsklstrrr6xo2715tov7wz[.]oast[.]fun`, and sends a DNS lookup to that attacker-controlled interactsh callback server — exfiltrating the machine identity to the attacker. The publisher (`lapdeplap` / `[account]`) is a throwaway identity not affiliated with Atlassian. IOC: oast[.]fun domain `zcagyqqmvnmgsklstrrr6xo2715tov7wz[.]oast[.]fun`.
- analyzed by
- Leitwacht
- first seen
- Jun 12, 2026, 05:40 PM
- analyzed
- Jun 12, 2026, 05:41 PM
Related advisories
- poloman@9.2.1
- paypal-examples-openai@99.99.9
- paasprint-sdk@9.9.9
- oc-navbar-module-client@9.9.10
- @whatnot-web/www-legacy@99.1.2
- mermaid-v11@9999.0.0
- mimecast-web-components@2.0.0
- sme-rko-finance-front-operations-notifications-impl@35.8.1
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.