Bigops products deposits runtime support module
Importing the package silently retrieves and executes an unverified native payload. The code uses HTTPS with DNS-TXT fallback and detached shell execution.
Source downloads or fetches remote code and executes it.
_runtime.jsView on unpkg · L3A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
_runtime.jsView on unpkg · L3Source file is highly similar to a previously finalized malicious package; route for source-aware review.
_runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
lib/telemetry.jsView on unpkgSource downloads or fetches remote code and executes it.
_runtime.jsView on unpkg · L3A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
_runtime.jsView on unpkg · L3Source file is highly similar to a previously finalized malicious package; route for source-aware review.
_runtime.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
lib/telemetry.jsView on unpkg