Threats Tagged 'mal-2026-6135'
View all threats tagged with 'mal-2026-6135'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'mal-2026-6135'
Click on any threat for detailed analysis and mitigation recommendations
The npm package 'ratelimitsucks' version 1.7.7 contains malicious code primarily serving as a school-filter-bypass web proxy with obfuscated JavaScript files and a service worker. It includes a cover page that loads a third-party script and opens a popunder ad redirect. The package also contains a script for mass publication of typosquatted sibling package names. While it does not execute code on installation or when required in Node.js, it abuses the npm registry for hosting unrelated proxy content and advertising. The package poses a high risk if installed or run, as it may compromise the host system. Join the discussion | GCVE Database | 06/18/2026, 16:30:12 UTC Added: 07/13/2026, 09:19:14 UTC |
Showing 1 to 1 of 1 result