Skip to main content

Malicious code in @ts-apis/ts-utils (npm)

0
Critical
Published: 06/23/2026 (06/23/2026, 03:01:33 UTC)
Source: GCVE Database
Product: @ts-apis/ts-utils

Description

The npm package @ts-apis/ts-utils contains a malicious backdoor in its published dist/index.js file that executes an obfuscated payload at require() time. This payload harvests a wide range of sensitive credentials and configuration files from the host system, including SSH keys, AWS, Kubernetes, Docker, Git, Google Cloud, Terraform, Azure, Vault, Railway, Solana credentials, environment files, and Linux secrets. It also queries cloud instance metadata services to steal short-lived credentials. The stolen data is encoded and exfiltrated via HTTPS to a remote server. Additionally, the malware establishes a persistent command-and-control channel that can download and execute further malicious binaries and run arbitrary shell commands. The malicious code is deliberately hidden in the distributed build, while the source directory contains only legitimate code, indicating a supply chain compromise. Any system with this package installed should be considered fully compromised.

Affected software

npmghsa
@ts-apis/ts-utils
Affected versions
=1.0.0=1.0.7=1.0.9=1.0.8=1.0.5=1.0.4=1.0.6=1.0.3=1.1.0=1.0.2=1.0.1

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 08/14/2026, 16:48:52 UTC

Technical Analysis

The @ts-apis/ts-utils npm package versions 1.0.0 through 1.1.0 contain a deliberately backdoored build in the published dist/index.js file. The malicious payload runs shortly after the package is required, harvesting a broad spectrum of sensitive credentials and configuration files from the local filesystem and environment, including SSH keys, AWS credentials, Kubernetes tokens, Docker config, Git credentials, Google Cloud credentials, and various cloud instance metadata endpoints. The collected data is base64-encoded, chunked, and exfiltrated over HTTPS to a remote server. The malware also maintains a persistent command-and-control channel, polling a remote server every 10 seconds to receive commands or download and execute additional payloads. Sensitive strings are obfuscated to evade detection. The source code repository contains only legitimate TypeScript utilities, indicating the malicious payload was introduced during the build or publishing process. This represents a severe supply chain compromise affecting all listed versions.

Potential Impact

Systems with this package installed are fully compromised. The attacker gains access to a wide range of sensitive credentials and secrets stored on the host, including private SSH keys, cloud provider credentials, Kubernetes tokens, and other environment secrets. This enables unauthorized access to cloud resources, source code repositories, container environments, and potentially other infrastructure. The persistent command-and-control channel allows the attacker to execute arbitrary commands and deploy additional malware, leading to complete system takeover. Credential theft and remote control capabilities pose a critical risk to confidentiality, integrity, and availability of affected systems and connected infrastructure.

Defensive Guidance

No official patch or fix is currently available. The package should be immediately removed from all systems. All credentials and secrets stored on affected systems must be considered compromised and rotated immediately from a secure, unaffected environment. Due to the high likelihood of full system compromise, affected hosts should be thoroughly audited and potentially rebuilt to ensure removal of all malicious artifacts. Monitor for any signs of further compromise or lateral movement. Avoid using this package until a trusted, clean version is released and verified.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Osv Id
MAL-2026-6275
Osv Schema Version
1.7.4
Aliases
["GHSA-3xmx-2xxv-rpfq"]
Ecosystems
["npm"]

Threat ID: 6a7f43f1bf8831d5395d7685

Added to database: 08/14/2026, 16:36:01 UTC

Last enriched: 08/14/2026, 16:48:52 UTC

Last updated: 09/25/2026, 00:32:45 UTC

Views: 22

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses