Malicious code in notify-logs (npm)
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (fec337f1c1858ad605f875ea51feb09f84fbd2eb702c7bc0462dbb427b3eff05) [email protected] presents itself as the `pino` logger (export name `pino`, README and type definitions mimic pino, npm version badge points at the legitimate pino package) but its runtime behavior is a remote-code dropper. index.js exports middleware that, on first invocation, uses child_process.spawn to launch a detached `node` process running lib/caller.js with stdio ignored. lib/caller.js performs an HTTP GET against https://jsonkeeper.com/b/EXSIF (a mutable anonymous JSON-paste host), reads `.data.cookie` from the response, and passes that string to `new Function.constructor("require", s)` then invokes it with the real `require` — compiling and executing attacker-controlled JavaScript inside the consumer's Node process with full module access. lib/const.js additionally stores a base64-encoded fallback endpoint (`aHR0cHM6Ly9qc29ua2VlcGVyLmNvbS9iL1pLNDVK` → https://jsonkeeper.com/b/ZK45J) along with base64-encoded header name/value, hiding the secondary C2 from plain-string scanners. The combination of logger impersonation, opaque remote payload from an anonymous mutable host, detached/silent execution, and obfuscated fallback endpoint is unambiguous supply-chain abuse: any application that loads and invokes this middleware grants the publisher arbitrary code execution.
AI Analysis
Technical Summary
The notify-logs package version 1.3.5 masquerades as the pino logger by mimicking its export name, README, and type definitions. However, its runtime behavior is malicious: it exports middleware which, upon first invocation, launches a detached Node.js process running a script that performs an HTTP GET request to a mutable anonymous JSON host (https://jsonkeeper.com/b/EXSIF). It extracts a JavaScript payload from the response, dynamically compiles and executes it with full access to Node.js modules via the real require function. Additionally, it stores a base64-encoded fallback C2 endpoint and obfuscated header information to evade detection. This combination of impersonation, remote opaque payload execution, detached silent processes, and obfuscation constitutes clear supply-chain abuse, granting the attacker arbitrary code execution in the host environment.
Potential Impact
Any application that installs and invokes [email protected] middleware is vulnerable to arbitrary remote code execution controlled by the attacker. This can lead to full compromise of the host system, data theft, persistence, and further malicious activity. The malicious payload is fetched dynamically from a mutable anonymous JSON paste service, allowing the attacker to change the executed code at will. The obfuscation and detached execution make detection difficult.
Mitigation Recommendations
No official patch or fix is currently available for [email protected]. Users should immediately remove this package from their dependencies and replace it with the legitimate pino logger or another trusted logging library. Avoid installing or running any code from [email protected]. Monitor your environment for any signs of compromise if this package was previously used. Patch status is not yet confirmed — check the vendor advisory or trusted sources for updates.
Malicious code in notify-logs (npm)
Description
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (fec337f1c1858ad605f875ea51feb09f84fbd2eb702c7bc0462dbb427b3eff05) [email protected] presents itself as the `pino` logger (export name `pino`, README and type definitions mimic pino, npm version badge points at the legitimate pino package) but its runtime behavior is a remote-code dropper. index.js exports middleware that, on first invocation, uses child_process.spawn to launch a detached `node` process running lib/caller.js with stdio ignored. lib/caller.js performs an HTTP GET against https://jsonkeeper.com/b/EXSIF (a mutable anonymous JSON-paste host), reads `.data.cookie` from the response, and passes that string to `new Function.constructor("require", s)` then invokes it with the real `require` — compiling and executing attacker-controlled JavaScript inside the consumer's Node process with full module access. lib/const.js additionally stores a base64-encoded fallback endpoint (`aHR0cHM6Ly9qc29ua2VlcGVyLmNvbS9iL1pLNDVK` → https://jsonkeeper.com/b/ZK45J) along with base64-encoded header name/value, hiding the secondary C2 from plain-string scanners. The combination of logger impersonation, opaque remote payload from an anonymous mutable host, detached/silent execution, and obfuscated fallback endpoint is unambiguous supply-chain abuse: any application that loads and invokes this middleware grants the publisher arbitrary code execution.
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The notify-logs package version 1.3.5 masquerades as the pino logger by mimicking its export name, README, and type definitions. However, its runtime behavior is malicious: it exports middleware which, upon first invocation, launches a detached Node.js process running a script that performs an HTTP GET request to a mutable anonymous JSON host (https://jsonkeeper.com/b/EXSIF). It extracts a JavaScript payload from the response, dynamically compiles and executes it with full access to Node.js modules via the real require function. Additionally, it stores a base64-encoded fallback C2 endpoint and obfuscated header information to evade detection. This combination of impersonation, remote opaque payload execution, detached silent processes, and obfuscation constitutes clear supply-chain abuse, granting the attacker arbitrary code execution in the host environment.
Potential Impact
Any application that installs and invokes [email protected] middleware is vulnerable to arbitrary remote code execution controlled by the attacker. This can lead to full compromise of the host system, data theft, persistence, and further malicious activity. The malicious payload is fetched dynamically from a mutable anonymous JSON paste service, allowing the attacker to change the executed code at will. The obfuscation and detached execution make detection difficult.
Mitigation Recommendations
No official patch or fix is currently available for [email protected]. Users should immediately remove this package from their dependencies and replace it with the legitimate pino logger or another trusted logging library. Avoid installing or running any code from [email protected]. Monitor your environment for any signs of compromise if this package was previously used. Patch status is not yet confirmed — check the vendor advisory or trusted sources for updates.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- MAL-2026-10156
- Osv Schema Version
- 1.7.4
- Aliases
- []
- Ecosystems
- ["npm"]
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a520edb68715ace43915870
Added to database: 07/11/2026, 09:37:31 UTC
Last enriched: 07/11/2026, 10:03:59 UTC
Last updated: 07/25/2026, 09:45:30 UTC
Views: 18
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.