An awesome developer dashboard that triggers a custom module.
Direct execution or import of index.js runs an obfuscated credential-stealing payload. It harvests browser data, captures screenshots, and sends collected data to Discord-controlled webhook endpoints.
Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
index.jsView on unpkg · L1Source appears to send environment or credential material to an external endpoint.
index.jsView on unpkg · L1A single source file combines environment access, network access, and code or shell execution; review context before blocking.
index.jsView on unpkg · L1Source contains an obfuscated payload loader that reconstructs and executes hidden code.
index.jsView on unpkg · L1Source sends credentials or rich application records to a package-controlled external receiver enabled by default.
index.jsView on unpkg · L1Source appears to send environment or credential material to an external endpoint.
index.jsView on unpkg · L1A single source file combines environment access, network access, and code or shell execution; review context before blocking.
index.jsView on unpkg · L1Source contains an obfuscated payload loader that reconstructs and executes hidden code.
index.jsView on unpkg · L1