Threats Tagged 'mal-2026-10227'
View all threats tagged with 'mal-2026-10227'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'mal-2026-10227'
Click on any threat for detailed analysis and mitigation recommendations
Malicious code in box-react-uix (npm) 0 The box-react-uix npm package is a malicious package published as part of a dependency confusion campaign. It uses a preinstall script to execute code during npm install that collects and sends the installer's public IP address and host telemetry, including personally identifiable information, to an attacker-controlled Sentry endpoint. The package name mimics an internal namespace to trick misconfigured resolvers into installing it instead of legitimate private dependencies. The payload is consistent across all packages published by the attacker, differing only in package name and Sentry project ID. This behavior is reconnaissance-focused, allowing attribution of installs to specific victim organizations. The package version 18.6.91 is affected. There is no official patch or fix available. Installing or running this package may fully compromise the host, and all secrets on the host should be rotated from a different machine. Join the discussion | GCVE Database | 07/06/2026, 00:00:00 UTC Added: 07/14/2026, 09:20:55 UTC |
Showing 1 to 1 of 1 result