@public-for-cdao/types@99.99.99
Malicious code in @public-for-cdao/types (npm)
Analysis
A dependency-confusion package: it carries a trivial stub module but declares a postinstall script that runs a bundled reconnaissance payload at install time. The payload harvests host and environment data and aggressively collects CI/CD and cloud secrets — reading dozens of sensitive environment variables (GitLab job/registry/deploy tokens, SSH private keys, AWS access keys, database and Docker/Harbor credentials, npm tokens) and crypto secrets (private keys, mnemonics, seed phrases). It also searches the filesystem for .env files across common application and CI paths, extracting any lines containing key/secret/token/password material, and enumerates CI build directories. All collected data is JSON-encoded and exfiltrated over HTTPS to external collector endpoints (webhook[.]site and a pipedream[.]net endpoint, with TLS verification disabled), and a copy is written to a temp file. The high synthetic version number is used to win dependency-confusion resolution against a private internal package of the same name.
- analyzed by
- Leitwacht
- first seen
- Jun 17, 2026, 04:27 AM
- analyzed
- Jun 17, 2026, 04:29 AM
Related advisories
- @public-for-cdao/providers@1.0.1
- @public-for-cdao/api@99.99.99
- @public-for-cdao/signer@99.99.99
- @public-for-cdao/backend@99.99.99
- @public-for-cdao/common@99.99.99
- @public-for-cdao/hooks@99.99.99
- @public-for-cdao/utils@99.99.99
- @public-for-cdao/core@99.99.99
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.