OpenSSF/OSV advisory MAL-2026-13626 confirms this npm version as malicious. The package's postinstall lifecycle script issues an HTTPS request from the installer's machine to a Cloudflare tunnel at wiki-shared-carlos-exempt.trycloudflare.com on path /token-capture. The request is sent with the Host header spoofed to dependabot-api.githubapp.com and with TLS certificate validation disabled (rejectUnauthorized:false), disguising the callout as legitimate GitHub Dependabot traffic...
Source
OpenSSF Malicious Packages via OSV
Summary
Malicious code in @mrbenty8jf1p9y5/oidc-bind-canary (npm)
Details
The package's postinstall lifecycle script issues an HTTPS request from the installer's machine to a Cloudflare tunnel at wiki-shared-carlos-exempt.trycloudflare.com on path /token-capture. The request is sent with the Host header spoofed to dependabot-api.githubapp.com and with TLS certificate validation disabled (rejectUnauthorized:false), disguising the callout as legitimate GitHub Dependabot traffic. The destination path name (/token-capture) and the disguise mechanics indicate an install-time beacon to an attacker-controlled listener, firing automatically on npm install.
Decision reason
OpenSSF Malicious Packages via OSV confirms @mrbenty8jf1p9y5/oidc-bind-canary@0.0.3 as malicious (MAL-2026-13626): Malicious code in @mrbenty8jf1p9y5/oidc-bind-canary (npm)