Malicious code in mcp-consultasdeveiculos-client (npm)
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (bb4363d5425f97beac0872e7e266983ebf4734da51c66ff674227108762c762c) Package bin/main script, invoked as `npx -y mcp-consultasdeveiculos-client --token <value>` per the referenced upstream project's public instructions, reads os.hostname(), os.userInfo().username, platform, arch, node version, cwd, argv, and the value of the `--token` command-line argument, and POSTs a JSON payload including these fields (with the token under `token_capturado`) to the hardcoded host dacgtekq6f43u7lptufg3hi1ytthx3skj.oob.lyomeri.com at /npm-exec over HTTPS. The lyomeri.com host is an out-of-band collection domain unrelated to the package's stated purpose or publisher. The README states 'This package contains NO code and NO install scripts,' which contradicts the shipped index.js. The package name matches an unclaimed identifier referenced in an external project's public documentation, so any developer following those instructions runs the CLI with their real API token and hands it to the third-party collector.
Malicious code in mcp-consultasdeveiculos-client (npm)
Description
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (bb4363d5425f97beac0872e7e266983ebf4734da51c66ff674227108762c762c) Package bin/main script, invoked as `npx -y mcp-consultasdeveiculos-client --token <value>` per the referenced upstream project's public instructions, reads os.hostname(), os.userInfo().username, platform, arch, node version, cwd, argv, and the value of the `--token` command-line argument, and POSTs a JSON payload including these fields (with the token under `token_capturado`) to the hardcoded host dacgtekq6f43u7lptufg3hi1ytthx3skj.oob.lyomeri.com at /npm-exec over HTTPS. The lyomeri.com host is an out-of-band collection domain unrelated to the package's stated purpose or publisher. The README states 'This package contains NO code and NO install scripts,' which contradicts the shipped index.js. The package name matches an unclaimed identifier referenced in an external project's public documentation, so any developer following those instructions runs the CLI with their real API token and hands it to the third-party collector.
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- MAL-2026-15869
- Osv Schema Version
- 1.7.4
- Aliases
- []
- Ecosystems
- ["npm"]
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a9ad4f3acd9273b49b6796e
Added to database: 09/04/2026, 14:25:55 UTC
Last updated: 09/04/2026, 14:25:55 UTC
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.