font-hub@1.5.2
Malicious code in font-hub (npm)
Analysis
The package index.js fetches JSON from hxxps://svganchordev[.]net/icons/107 and passes the response's 'credits' field to a new Function() constructor with full Node.js context (require, process, Buffer, setTimeout, etc.), enabling arbitrary remote code execution. The fetched payload runs with access to all Node.js APIs. The package also ships dependencies including node-machine-id (host fingerprinting), socket[.]io-client (real-time C2 channel), @primno/dpapi (Windows credential access), and sqlite3/better-sqlite3 (local database access) — tooling for the remotely-delivered payload. The README is a copy-paste from the unrelated polymarket-clob-api package, confirming the package is misrepresented.
- analyzed by
- Leitwacht
- first seen
- Jul 13, 2026, 12:52 PM
- analyzed
- Jul 13, 2026, 12:53 PM
Related advisories
- svg-fetcher@2.4.1
- cookie-sign@2.3.5
- babel-preset-lib-client@4.9.11
- kuaishou@99.9.9
- chai-as-doc@2.3.5
- polymarket-mcp-v2@2.1.6
- nonenull1@1.0.0
- @wagni_bot/meteora-sdk@1.2.0
Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.