ベータ Shoulder はベータ版です — 結果が誤っている場合があります。皆さまのフィードバックが次に修正する内容を決定します。 フィードバックを送る

セキュリティアラート

Shoulderのエコシステム分析からのシグナル — 新しいパッケージのスキャン、リスク変化の検出、脆弱性の発見。

アラートは、Shoulderがパッケージを分析し、レビューする価値のあるシグナルを検出したときに生成されます。各アラートは完全な脅威レポートにリンクしています。

npm/@asermax/[email protected] CRITICAL

Bulk env-var sweep + shell exec at runtime — credential-stealer

  • Bulk env-var sweep (cap-bulk-env-access reads ALL of process.env) + outbound network — credential-stealer
  • Install hook spawns dynamic / forked-detached shell — dropper attribution
  • Install hook + shell exec + network — dropper shape (scopes may be install or runtime; install hook can transitively reach runtime caps via the postinstall entrypoint)
npm/@cynos-ai/[email protected] MEDIUM

Install hook + shell exec + network — dropper shape (scopes may be install or runtime; install hook can transitively reach runtime caps via the postinstall entrypoint)

npm/@moneysiren/[email protected] CRITICAL

Payload delivery from suspicious source: IOC URL + execution capability

  • Install hook spawns dynamic / forked-detached shell — dropper attribution
  • Install hook sends traffic to flagged target (raw IP / paste site / tunnel) — dropper
  • Install hook writes to system paths (/etc/, /usr/, etc.) — review for persistence
  • Cloud SDK import + env access + outbound network — capability acquisition + exercise
  • Install hook + shell exec + network — dropper shape (scopes may be install or runtime; install hook can transitively reach runtime caps via the postinstall entrypoint)
pypi/[email protected] CRITICAL

Payload delivery from suspicious source: IOC URL + execution capability

  • Bulk env-var sweep + shell exec at runtime — credential-stealer
  • Bulk env-var sweep (cap-bulk-env-access reads ALL of process.env) + outbound network — credential-stealer
  • Raw socket usage paired with credential reads — possible TCP exfil bypass
  • Dynamic eval + network + shell exec — dropper trio (arbitrary code execution, exfiltration channel, OS access)
  • Sensitive file access with network egress — credential exfiltration pattern
  • Dynamic code evaluation with network access — potential code injection or exfiltration
pypi/[email protected] HIGH

Payload delivery from suspicious source: IOC URL + execution capability

  • Dynamic / forked-detached shell paired with code obfuscation — runtime dropper attribution (no install hook required)
  • Dynamic eval + network + shell exec — dropper trio (arbitrary code execution, exfiltration channel, OS access)
  • Obfuscated shell execution — concealment pattern
  • Dynamic code evaluation with network access — potential code injection or exfiltration
npm/[email protected] MEDIUM

Install hook + shell exec + network — dropper shape (scopes may be install or runtime; install hook can transitively reach runtime caps via the postinstall entrypoint)

npm/[email protected] CRITICAL

Bulk env-var sweep + shell exec at runtime — credential-stealer

  • Bulk env-var sweep (cap-bulk-env-access reads ALL of process.env) + outbound network — credential-stealer
  • Publisher's current primary email is on a known burner / anonymous-by-design provider — ongoing hijack-shape state (persists across versions; companion to the transition signal)
  • Cloud SDK import + env access + outbound network — capability acquisition + exercise
  • Install hook + shell exec + network — dropper shape (scopes may be install or runtime; install hook can transitively reach runtime caps via the postinstall entrypoint)
  • Install hook writes to user-home dotfiles (~/.bashrc, ~/.ssh/, ~/.local/bin/) — auto-installing persistence
npm/[email protected] MEDIUM

Dynamic eval + network + shell exec — dropper trio (arbitrary code execution, exfiltration channel, OS access)

  • Install hook + shell exec + network — dropper shape (scopes may be install or runtime; install hook can transitively reach runtime caps via the postinstall entrypoint)
  • Dynamic code evaluation with network access — potential code injection or exfiltration
pypi/[email protected] MEDIUM

Dynamic eval + network + shell exec — dropper trio (arbitrary code execution, exfiltration channel, OS access)

  • Dynamic code evaluation with network access — potential code injection or exfiltration
pypi/[email protected] CRITICAL

Payload delivery from suspicious source: IOC URL + execution capability

  • Bulk env-var sweep + shell exec at runtime — credential-stealer
  • Bulk env-var sweep (cap-bulk-env-access reads ALL of process.env) + outbound network — credential-stealer
npm/[email protected] HIGH

Package name too similar to user-agents (0.2M weekly downloads)

  • A dist-tag (e.g. latest) was moved to this version while it was less than 1 hour old — publish-side compromise indicator
pypi/[email protected] HIGH

Payload delivery from suspicious source: IOC URL + execution capability

  • Dynamic / forked-detached shell paired with code obfuscation — runtime dropper attribution (no install hook required)
  • Dynamic eval + network + shell exec — dropper trio (arbitrary code execution, exfiltration channel, OS access)
  • Obfuscated shell execution — concealment pattern
  • Dynamic code evaluation with network access — potential code injection or exfiltration
pypi/[email protected] HIGH

Payload delivery from suspicious source: IOC URL + execution capability

  • Dynamic / forked-detached shell paired with code obfuscation — runtime dropper attribution (no install hook required)
  • Dynamic eval + network + shell exec — dropper trio (arbitrary code execution, exfiltration channel, OS access)
  • Obfuscated shell execution — concealment pattern
  • Dynamic code evaluation with network access — potential code injection or exfiltration