testudo-pack@1.0.0
Malicious code in testudo-pack (npm)
Analysis
The postinstall hook in package.json runs index.js, which downloads a remote binary from sloth-antagonist[.]vercel[.]app and executes it as a background process. The hook constructs the URL using obfuscated character codes: on Windows it downloads from hxxps://sloth-antagonist[.]vercel[.]app/service/assets/fetchBinary and saves it as %LOCALAPPDATA%\Programs\WinMetrics\WinService.exe; on Linux it downloads from hxxps://sloth-antagonist[.]vercel[.]app/service/assets/fetchLinuxBinary and saves it as ~/.local/share/WinMetrics/WinMetrics. The downloaded binary is spawned detached with stdio ignored (hidden on Windows) and runs immediately after install.
- analyzed by
- Leitwacht
- first seen
- Jul 8, 2026, 08:16 AM
- analyzed
- Jul 8, 2026, 08:17 AM
Related advisories
- testis-pack@1.0.0
- @vite-ln/build-ts@5.17.0
- @vite-tab/tab@5.7.0
- @bobfrankston/msger@0.1.388
- react-icons-svgo@1.5.4
- npm-rce-poc@1.0.13
- @withoneltd/lucky@0.1.4
- @immobiliarelabs/backstage-plugin-gitlab-backend@3.0.3
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.