OpenSSF/OSV advisory MAL-2026-6184 confirms this npm version as malicious. package.json declares a preinstall hook (`"preinstall": "node index.js"`) that fires automatically on `npm install`. index.js requires os, dns, https, querystring, and the package's own package.json, then collects the installer's hostname (`os.hostname()`), username (`os.userInfo().username`), home directory (`os.homedir()`), configured DNS servers (`dns.getServers()`), current working directory, and the full...
Source
OpenSSF Malicious Packages via OSV
Summary
Malicious code in @qlab/component-intelligence (npm)
Details
package.json declares a preinstall hook (`"preinstall": "node index.js"`) that fires automatically on `npm install`. index.js requires os, dns, https, querystring, and the package's own package.json, then collects the installer's hostname (`os.hostname()`), username (`os.userInfo().username`), home directory (`os.homedir()`), configured DNS servers (`dns.getServers()`), current working directory, and the full contents of package.json, and POSTs them via HTTPS to the hardcoded webhook `https://eo1e4fhn1i67p8r.m.pipedream.net/`. This is the canonical dependency-confusion / recon-beacon shape: host identifiers and internal package metadata leave the machine unconditionally at install time to an attacker-controlled endpoint, giving the attacker reconnaissance data on internal package names, corporate hostnames, and user identities to fuel follow-on supply-chain attacks.
Decision reason
OpenSSF Malicious Packages via OSV confirms @qlab/component-intelligence@2.0.6 as malicious (MAL-2026-6184): Malicious code in @qlab/component-intelligence (npm)