LWA-2026-6993 MAL-2026-13356 ↗ confirmed malware

chai-foundry@7.0.3

Malicious code in chai-foundry (npm)

T1195.002 · Compromise Software Supply ChainT1059 · Command and Scripting InterpreterT1082 · System Information DiscoveryT1071.001 · Web ProtocolsT1105 · Ingress Tool TransferT1041 · Exfiltration Over C2 Channel

Analysis

chai-foundry@7.0.3 is a trojanized clone of the pino logger. The package ships a 4.1MB obfuscated payload in lib/config.js that activates when the module is required. At runtime it beacons to C2 server 167[.]88[.]167[.]54:8087 via POST /api/log (sending hostname, OS, username, and a "Starting client" message) and POST /api/notify (sending a unique user key, hostname, OS, and username). It also exfiltrates system information as sysinfo.txt (hostname, OS, username, platform, timestamp) via multipart/form-data POST to 167[.]88[.]167[.]54:8085/upload. The C2 communication uses the axios HTTP library with a validation header on each request. The package has no repository, no README, and its description is generic filler text.

analyzed by
Leitwacht
first seen
Jul 21, 2026, 08:46 PM
analyzed
Jul 21, 2026, 08:50 PM

Related advisories

browse all confirmed advisories →

Independently detected by the Leitwacht supply-chain probe. IOCs are defanged. Published CC0. Think this is a mistake? See the dispute policy.