目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%
← 返回恶意软件包
npm active

vanexa-agent

MAL-2026-10751
2026-08-06 23:29:22
OpenSSF Malicious Packages
该软件包被识别为恶意包。建议隔离受影响环境,并排查凭据泄露和异常网络连接。

Summary

Malicious code in vanexa-agent (npm)

AI 分析整理qwen3.6
基于上游报告生成,请以下方原始证据为准。
公开使用量数据
统计周期
last-week
下载量
478
数据源
npmjs.org
下载量只代表仓库活动度,不等于已被入侵的安装数量。
受影响版本
EcosystemPackageVersion
npmvanexa-agent1.1.10
npmvanexa-agent1.1.11
npmvanexa-agent1.1.13
npmvanexa-agent1.1.15
npmvanexa-agent1.1.16
npmvanexa-agent1.1.17
npmvanexa-agent1.1.18
npmvanexa-agent1.1.22
npmvanexa-agent1.1.23
npmvanexa-agent1.1.24
npmvanexa-agent1.1.25
npmvanexa-agent1.1.26
npmvanexa-agent1.1.27
npmvanexa-agent1.1.28
npmvanexa-agent1.1.30
npmvanexa-agent1.1.31
npmvanexa-agent1.1.33
npmvanexa-agent1.1.34
npmvanexa-agent1.1.35
npmvanexa-agent1.1.36
npmvanexa-agent1.1.37
npmvanexa-agent1.1.38
npmvanexa-agent1.1.39
npmvanexa-agent1.1.41
npmvanexa-agent1.1.42
npmvanexa-agent1.1.45
npmvanexa-agent1.1.46
npmvanexa-agent1.1.48
npmvanexa-agent1.1.8
npmvanexa-agent1.1.9
恶意行为说明OpenSSF OSV
上游来源证据
展开原始 OSV JSON
{"schema_version":"1.7.4","id":"MAL-2026-10751","published":"2026-07-16T18:39:20Z","modified":"2026-08-06T23:29:22.159702080Z","summary":"Malicious code in vanexa-agent (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (5ea182e48a895e218d345ca6308727223e54eb285d9af44a167b6b115ba1a907)\nWhen the user runs `vanexa-agent start`, the daemon opens a persistent WebSocket to a hardcoded Cloudflare Workers relay at wss://vanexa-agent-relay.hanazaki542.workers.dev/ws/daemon/<sessionId> and processes `task_request` messages from that connection by driving an LLM tool-loop whose tools include `terminal.exec` and `terminal.exec_background`, which invoke `spawn('/bin/bash', ['-c', args.command])` (or `cmd.exe /c...` on Windows) on the installer's host. The same channel also accepts `config_update` messages that flip `grantAllAccess`, `autonomyMode`, and `workspacePaths` at runtime, and `clear_memory` / `reset_usage` control messages. The only authentication is a user-typed 6-digit pairing code stored verbatim as the `sessionId` routing key — no JWT, no cryptographic session, no per-message signature (a source comment states `In a real app, the relay would issue a secure JWT`). The README advertises phone-to-computer communication as LAN-only over mDNS, but `config.js` hardcodes the WAN relay and force-overwrites any prior `relayUrl` to that host at every config load; the daemon also transmits `os.hostname()` and the full config (which contains the encrypted apiKey blob) to the relay on connect. Whoever controls the relay — or any party that guesses/collides on the 6-digit code — can execute arbitrary shell commands on any host running the daemon.\n","affected":[{"package":{"name":"vanexa-agent","ecosystem":"npm"},"versions":["1.1.10","1.1.9","1.1.23","1.1.46","1.1.34","1.1.39","1.1.27","1.1.18","1.1.22","1.1.28","1.1.13","1.1.45","1.1.31","1.1.41","1.1.35","1.1.33","1.1.16","1.1.11","1.1.42","1.1.8","1.1.30","1.1.36","1.1.38","1.1.17","1.1.25","1.1.37","1.1.48","1.1.26","1.1.15","1.1.24"],"database_specific":{"cwes":[{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"}],"indicators":{"evidence_files":[{"path":"src/daemon.js","sha256":"ca7b68cf8ea60ec6b2085bf6ed0cbd970405bcb4a597d8e0a090030f96594364","tlsh":"4202630a48f730a95073957dbb4b20153a349503230def85f94d23b69f84ba45de27ee"},{"path":"src/pairing.js","sha256":"e4a1974816f948ffc5223bdcc1969896fb9921180dbfb01e381002b8360cdfca","tlsh":"56416e5728f62978007360a24f9b803976349a032354fb59fe4da33a9fc5a65d7233ed"},{"path":"src/config.js","sha256":"cd52177ac45b811c01c4ad17f7a7a39f00a1e403a85ea3933b70a53bbf663fb7","tlsh":"5051635b3eda563142a1b29a872f650c7632e203b198fe90f19d27e63fde41c51236b4"}],"package_integrity":[{"filename":"vanexa-agent-1.1.10.tgz","hashes":{"sha1":"852e2760a6a0c40dd1a66e8ef46df48daf1ea5c3","sha512_sri":"sha512-pETjG0NEMvZMihmDi59TW/8gihD2smQaUr+OQsBFVT/xHizd0szNX4T6ie7fVvJYQLiRT2s2LMBquKB9uHB6Pg=="}}]}}}],"references":[{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.10"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.9"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.23"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.46"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.34"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.39"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.27"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.18"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.22"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.28"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.13"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.45"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.31"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.41"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.35"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.33"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.16"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.11"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.42"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.8"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.30"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.36"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.38"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.17"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.25"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.37"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.48"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.26"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.15"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/vanexa-agent/v/1.1.24"}],"database_specific":{"malicious-packages-origins":[{"id":"IN-MAL-2026-010733","import_time":"2026-07-16T18:54:01.762217474Z","modified_time":"2026-07-16T18:39:20Z","sha256":"433bc5b1e6814e9c9a1f5d4ff26e2dbb31fdb8a5e9a08f9c94696347dcbeb803","source":"amazon-inspector","versions":["1.1.10"]},{"id":"IN-MAL-2026-010738","import_time":"2026-07-16T18:54:01.996192715Z","modified_time":"2026-07-16T18:40:04Z","sha256":"ceb12856926d98ac98f1e81e0ad83b749eeeea08be8e53e61d5374f1492589dc","source":"amazon-inspector","versions":["1.1.9"]},{"id":"IN-MAL-2026-016787","import_time":"2026-08-06T23:25:09.274560646Z","modified_time":"2026-08-06T19:38:50Z","sha256":"085c6cc7e4bb409489aed94fd212c63d38e409b8529cc23b7af596649172645b","source":"amazon-inspector","versions":["1.1.23"]},{"id":"IN-MAL-2026-016792","import_time":"2026-08-06T23:25:09.54444001Z","modified_time":"2026-08-06T19:39:33Z","sha256":"538231c92de06945f48654f857f3fbe246b15cba260b383c196f2de7492fc4be","source":"amazon-inspector","versions":["1.1.46"]},{"id":"IN-MAL-2026-016780","import_time":"2026-08-06T23:25:08.956351927Z","modified_time":"2026-08-06T19:37:52Z","sha256":"5ea182e48a895e218d345ca6308727223e54eb285d9af44a167b6b115ba1a907","source":"amazon-inspector","versions":["1.1.34"]},{"id":"IN-MAL-2026-016777","import_time":"2026-08-06T23:25:08.764479945Z","modified_time":"2026-08-06T19:37:15Z","sha256":"a6d4b2052fef2d6df0c1e57ccc87a542cda958b35aa8c935379420f121959f95","source":"amazon-inspector","versions":["1.1.39"]},{"id":"IN-MAL-2026-016781","import_time":"2026-08-06T23:25:09.007398806Z","modified_time":"2026-08-06T19:37:59Z","sha256":"dae3911916167436797a3e96316bd48612c3b6837a0f04ced87746624e662460","source":"amazon-inspector","versions":["1.1.27"]},{"id":"IN-MAL-2026-016789","import_time":"2026-08-06T23:25:09.385914833Z","modified_time":"2026-08-06T19:39:07Z","sha256":"e4970165e071172a1322f80615285359cb04db1717d6ad7bfbe31b79e9f368f0","source":"amazon-inspector","versions":["1.1.18"]},{"id":"IN-MAL-2026-016788","import_time":"2026-08-06T23:25:09.354946625Z","modified_time":"2026-08-06T19:38:59Z","sha256":"f133049218cd6ee2eacb69c037db752874cd72f0c7ea998fdc2ec84d589dca3d","source":"amazon-inspector","versions":["1.1.22"]},{"id":"IN-MAL-2026-016795","import_time":"2026-08-06T23:25:09.67528049Z","modified_time":"2026-08-06T19:39:59Z","sha256":"07155a8aeab77cf425d58646681d14b51c677a6aeb960402f93968012ada50d2","source":"amazon-inspector","versions":["1.1.28"]},{"id":"IN-MAL-2026-016791","import_time":"2026-08-06T23:25:09.500666149Z","modified_time":"2026-08-06T19:39:25Z","sha256":"28125fc8491617ecc4225baa483fc8b5db6d1adf28808f53a170872bdf20db4f","source":"amazon-inspector","versions":["1.1.13"]},{"id":"IN-MAL-2026-016778","import_time":"2026-08-06T23:25:08.824551603Z","modified_time":"2026-08-06T19:37:30Z","sha256":"2acac7c1f1564fe3818d006cbe28b2f4cb1fab06a721d0919350459d15c6d82d","source":"amazon-inspector","versions":["1.1.45"]},{"id":"IN-MAL-2026-016786","import_time":"2026-08-06T23:25:09.245023926Z","modified_time":"2026-08-06T19:38:43Z","sha256":"3f7cd0607d3709d07bd3641b5efebc10a295b24887f99d3f94cf7c2853a1a3ec","source":"amazon-inspector","versions":["1.1.31"]},{"id":"IN-MAL-2026-016796","import_time":"2026-08-06T23:25:09.702650189Z","modified_time":"2026-08-06T19:40:06Z","sha256":"5e2c7972a601570fc26bcc35a45e1f2027d34058d945b4b6645f5dfd855c0057","source":"amazon-inspector","versions":["1.1.41"]},{"id":"IN-MAL-2026-016802","import_time":"2026-08-06T23:25:09.974082515Z","modified_time":"2026-08-06T19:40:59Z","sha256":"c460d3ab58e4a1be92293d2aff3cce0a200b0d614c7f2e57e223d72178cd03f2","source":"amazon-inspector","versions":["1.1.35"]},{"id":"IN-MAL-2026-016782","import_time":"2026-08-06T23:25:09.046180031Z","modified_time":"2026-08-06T19:38:08Z","sha256":"d335b30bff264c207c7c793bbc9936d5accad2c6d03a32daeddf1ae0e38e736f","source":"amazon-inspector","versions":["1.1.33"]},{"id":"IN-MAL-2026-016797","import_time":"2026-08-06T23:25:09.764155326Z","modified_time":"2026-08-06T19:40:14Z","sha256":"21a8ef0c5bc4c8395eab5abf465125a82106e0b15c203e9807799cdb89e7c346","source":"amazon-inspector","versions":["1.1.16"]},{"id":"IN-MAL-2026-016793","import_time":"2026-08-06T23:25:09.595018997Z","modified_time":"2026-08-06T19:39:42Z","sha256":"22aaf52ab9535a89eb5583fdf1bfc9c268a154cafb492bdc55748d8a9de01d2b","source":"amazon-inspector","versions":["1.1.11"]},{"id":"IN-MAL-2026-016800","import_time":"2026-08-06T23:25:09.876466634Z","modified_time":"2026-08-06T19:40:40Z","sha256":"243dd613a40834cd7350b2e0f802caf63d34c9fad4da6b2ebfa1cf6de4b0644c","source":"amazon-inspector","versions":["1.1.42"]},{"id":"IN-MAL-2026-016799","import_time":"2026-08-06T23:25:09.830304838Z","modified_time":"2026-08-06T19:40:34Z","sha256":"828449ad93e560d440dfb9d9a289e301d06045fcc7bb4980bd2fcd1c50735186","source":"amazon-inspector","versions":["1.1.8"]},{"id":"IN-MAL-2026-016794","import_time":"2026-08-06T23:25:09.629866164Z","modified_time":"2026-08-06T19:39:50Z","sha256":"908b8a1ed403041fcd66bafa93e579407525854d1dce499ea1f0713f8d5825c4","source":"amazon-inspector","versions":["1.1.30"]},{"id":"IN-MAL-2026-016775","import_time":"2026-08-06T23:25:08.697481826Z","modified_time":"2026-08-06T19:36:59Z","sha256":"abfb6c7b93314afe0789e78d3582f7c3c01ae79b0fdd2362a829207f5e815904","source":"amazon-inspector","versions":["1.1.36"]},{"id":"IN-MAL-2026-016779","import_time":"2026-08-06T23:25:08.913937637Z","modified_time":"2026-08-06T19:37:40Z","sha256":"dfcfa4bb4d083d6d35cb5fdf48d64180a09ca498db68b8377b87a8895b62502c","source":"amazon-inspector","versions":["1.1.38"]},{"id":"IN-MAL-2026-016801","import_time":"2026-08-06T23:25:09.929270822Z","modified_time":"2026-08-06T19:40:51Z","sha256":"e2cda4b5d0354c029ff614f71add6008a4e40930af9ffd15b7f15d21bd03adf9","source":"amazon-inspector","versions":["1.1.17"]},{"id":"IN-MAL-2026-016784","import_time":"2026-08-06T23:25:09.175816406Z","modified_time":"2026-08-06T19:38:28Z","sha256":"5ba82f0017ec4469958a2b723435bba2f253b9bc9739f8964c2969766d4461b6","source":"amazon-inspector","versions":["1.1.25"]},{"id":"IN-MAL-2026-016776","import_time":"2026-08-06T23:25:08.730929738Z","modified_time":"2026-08-06T19:37:08Z","sha256":"92fece4565079805df56618ee5e216e19725567425f482a37486de45a88601a1","source":"amazon-inspector","versions":["1.1.37"]},{"id":"IN-MAL-2026-016798","import_time":"2026-08-06T23:25:09.795539095Z","modified_time":"2026-08-06T19:40:22Z","sha256":"978a1cc5794a243b6324bb49a324013976b894c0fadb62c3096e40013102e1c3","source":"amazon-inspector","versions":["1.1.48"]},{"id":"IN-MAL-2026-016783","import_time":"2026-08-06T23:25:09.074080178Z","modified_time":"2026-08-06T19:38:17Z","sha256":"af22ed1a1f8197312e09a73220885549c8191ec3f6f21315a152acd114c5df64","source":"amazon-inspector","versions":["1.1.26"]},{"id":"IN-MAL-2026-016790","import_time":"2026-08-06T23:25:09.453704265Z","modified_time":"2026-08-06T19:39:15Z","sha256":"fa330ab5efc3af644d3fc668b1c21aea1150854ec6b541208d79407a619e2bd3","source":"amazon-inspector","versions":["1.1.15"]},{"id":"IN-MAL-2026-016785","import_time":"2026-08-06T23:25:09.212697776Z","modified_time":"2026-08-06T19:38:36Z","sha256":"ff016f4220e59d94def7b96a415cf184cb89a13a8414e3b14ff54a789c6b2121","source":"amazon-inspector","versions":["1.1.24"]}]},"credits":[{"name":"Amazon Inspector","contact":["inspector-research@amazon.com"],"type":"FINDER"}]}

数据来源:OpenSSF Malicious Packages · Apache-2.0