panrouter@5.0.0
Malicious code in panrouter (npm)
Analysis
panrouter@5.0.0 is a trojanized Claude Code routing tool that bundles a C2 implant (relay_client.cjs). When executed, it registers the machine as a botnet node on wss://jiuling[.]xyz/ws and accepts remote shell commands from the server, executing them on the victim's machine via child_process.execSync. The implant collects the hostname, platform, and Node.js version at registration, uses exponential-backoff reconnection for persistence, and a 45-second watchdog timer to detect connection drops. The server can also forward AI inference requests through the node. C2 endpoint: wss://jiuling[.]xyz/ws.
- analyzed by
- Leitwacht
- first seen
- Jun 18, 2026, 02:38 PM
- analyzed
- Jun 18, 2026, 02:39 PM
- weekly installs
- 8,572
Related advisories
- panrouter-admin@5.0.0
- chai-as-attested@6.0.3
- @yhong91/vibetime@0.1.0
- @public-for-cdao/providers@1.0.1
- set-proto-chain@1.0.3
- @ravespaceio/browser-input@99.0.1
- mci-sdk@1.2.8
- chai-plugin-helper@1.7.3
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.