目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%
← 返回恶意软件包
npm active

trimprompt

MAL-2026-13462
2026-08-06 23:29:21
OpenSSF Malicious Packages
该软件包被识别为恶意包。建议隔离受影响环境,并排查凭据泄露和异常网络连接。

Summary

Malicious code in trimprompt (npm)

安装阶段执行
AI 分析整理qwen3.6
基于上游报告生成,请以下方原始证据为准。
公开使用量数据
统计周期
last-week
下载量
133
数据源
npmjs.org
下载量只代表仓库活动度,不等于已被入侵的安装数量。
受影响版本
EcosystemPackageVersion
npmtrimprompt1.0.35
npmtrimprompt1.0.42
npmtrimprompt1.0.46
npmtrimprompt1.0.47
npmtrimprompt1.0.48
npmtrimprompt1.0.49
恶意行为说明OpenSSF OSV
上游来源证据
展开原始 OSV JSON
{"modified":"2026-08-06T23:29:21Z","published":"2026-08-06T19:41:53Z","schema_version":"1.7.4","id":"MAL-2026-13462","summary":"Malicious code in trimprompt (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (202ef6d02c8fa917e9515b448972c19a209007f858b17d236a74857f3fe4febb)\nThe package `trimprompt@1.0.47` ships a large set of heavily obfuscated JavaScript modules (hex-mangled identifiers `_0x...` across cache-manager.js, cache.js, ccr.js, dashboard.js, executor.js, file-watcher.js, hooks/claude-hook.js, mcp.js, proxy-conv.js, proxy-resp.js, redactor.js, seed.js, simulate.js, sync.js, tracker.js, and all filters/*.js) whose original structure and destinations are deliberately hidden. Two of these obfuscated files (sync.js and tracker.js) additionally combine `require('child_process')` with HTTP `POST` calls carrying host/identifier fields — the shape of host-reconnaissance and outbound reporting to a remote endpoint. A `postinstall.js` script auto-executes on `npm install` and spawns PowerShell (`spawn('powershell',...)`), and `shims.js` also invokes `child_process` and runs `execSync('pwsh...')`, providing an install-time and load-time execution surface on Windows hosts. The combination of pervasive identifier-level obfuscation across nearly every module, a PowerShell-spawning postinstall lifecycle hook, and obfuscated modules that pair child_process with HTTP POST of host identifiers is inconsistent with a legitimate prompt-trimming utility and matches the shape of an install-time execution + host-beaconing supply-chain payload. Concrete destination hostnames/URLs are hidden behind the string-array obfuscation and are not recoverable from identifier evidence alone.\n","affected":[{"package":{"ecosystem":"npm","name":"trimprompt"},"versions":["1.0.47","1.0.35","1.0.49","1.0.46","1.0.42","1.0.48"],"database_specific":{"cwes":[{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"}],"indicators":{"evidence_files":[{"path":"cache-manager.js","sha256":"b3e2aa3704fca83256ab071130da9aa39eb882dc26797ecfdd33c64788f7b374","tlsh":"b2e16306af807a41334a9fab7733b1e9c15a4ca93458c58bd00e7af52dd2326d1d2f72"},{"path":"cache.js","sha256":"8c1aa782932074ecfb910f5144ae80aca6984413f19c00c0d5bc3564e66bf228","tlsh":"30f126806ec6a78423924f77b627a2f8f3572d9b31845443e01e2f717861711e6abc36"},{"path":"ccr.js","sha256":"7507f8834103e949927f214904e3e77dc8031f21f83ad3262ea4867448567a9d","tlsh":"95f12e909e40a0c913d38fe77e3629d3d92e1c6e374884cba11c7ee57a31606e5f9932"},{"path":"dashboard.js","sha256":"3f0868571654b0a71f51fc898f8cd9196b922070eac16f862d265979db696219","tlsh":"8c529545af806a05234a4fe77333b0e5f69b1dad3858899bd1487eb12cd671af8e1c31"},{"path":"executor.js","sha256":"a8e2cbd7d320bd215fb897025a9ac66b349d348fba7742527349722f9332db9b","tlsh":"41a17516efd0794803933f77632ba2b1f15ba86f31909057e205f9a5a9d1206c7f1bb2"},{"path":"file-watcher.js","sha256":"ba4b8c94eb85ccbfbefc93e2befda71f201af4a8c5515e6dd896cb76aef97705","tlsh":"42c2b7402fc05a9d3b0bcbbbb35bb0d1c8ae155d3654498bd20cbeac2d96217e9d2971"},{"path":"filters/devops.js","sha256":"31f72611bd2025df117b900188501113071d395098e8ce81f83e1fb8410a2d30","tlsh":"a002f10e7ec499dd378a6ef6372dc4d3d61e4d9a3886960fc2087e309c9262be1d5634"},{"path":"filters/generic.js","sha256":"e6018258f2b7b6a17e5b1af255c019fa297005f4978449fac27286540b586467","tlsh":"61d143505ec1298457865ff6a52bf0d5e92ff59e30468ac9c211ae207cc023ff3e197a"},{"path":"filters/git.js","sha256":"1228de4f3b9cbb38a8794794c4210236f48ea587a7c74b2fdb2dc71fa1b9538c","tlsh":"7fe178057ac07e4a63d31bb2eb2770d0cc6e2899354add83d519fe66ac93205dacc8f5"},{"path":"filters/go.js","sha256":"6bc19df4f9be95e764734445db532c7583d676660d24e179f9a54965b99b2f5e","tlsh":"d1a1e908ad805b4d2b420bf7385792c0ed0a4e1c38ad58a39b0cbf55c9daa1af3e4d71"},{"path":"filters/index.js","sha256":"4e460d49fbbd5d46d142513609a32fed301af10b1bfbbb62f463c9868ae7407b","tlsh":"9732e05f9fc1164f33491eaaf31630f1d315c81cf668ac47f25afa2869847e6da42931"},{"path":"filters/js.js","sha256":"f4c9190aac8a1e2a0f7ef2cf0e8db84267c73efe34cb618c8dcd3c00f4c7ec0c","tlsh":"3e9134187f4008df130b6fb7472e2cc9d6629c6e36944d8ea7403e21bd921ead1f8572"},{"path":"filters/python.js","sha256":"b4f4adb76d5a6a175f87c2ba760bef5f352bc347a06d2b91125c6463a26e987b","tlsh":"03c10258dd407dd89b869f76593230e1ccae5a2eb171cf46f320bad0a850722e5d9bf0"},{"path":"filters/rust.js","sha256":"b8ef7dee1e09861955ffdfca4b96f08425da27c844cb2a57418ce3d953e7219b","tlsh":"bdc1014159c09dd42ba71eb3b23732c1e799a89d30a98cb4e114be54391113be7fcd74"},{"path":"filters/shell.js","sha256":"4683329d306b3934e09fc2603fbda1d3c445ab338f368fffb7ea8e94e5f7de3b","tlsh":"6b8251909fc0a9552381eff7a71ba0e9f7072c6a754888c3d508fa207892b57e5e9835"},{"path":"hooks/claude-hook.js","sha256":"9cf771279c18ea854d21a1760aef0b81fff806b53cd8b37ea18a583e3d7086cc","tlsh":"1b4272e3e780c76c025597609f3e259ae155ab26b5c0eb4050cddfc62d9e20f917ce3a"},{"path":"mcp.js","sha256":"6b40838c823f0855fd879259a2236134a7014c64578525adb7ced0a612f6c021","tlsh":"66f13410bfe8156413d21ebf37279680d51a9d2d389198cbe70cbeac5ed0127ebb1436"},{"path":"postinstall.js","sha256":"fa26a63f9f00c0824d9151ba9ca81fe585fce7d9b4e7af9774e166e4bffcd4a3","tlsh":"f041f07a12be832130a0d84dee0b9661140eb12371087990bdceb582dfde22583372f5"},{"path":"proxy-conv.js","sha256":"7aec75ff2a2a872da6e2a5f7e2db990ec7afe96ff2e09dccbdcd5b0b9489403a","tlsh":"af0240613fc4d1ea23469ff76b2b34c1da0b611a38940587d5017e746cab23bd9f2639"},{"path":"proxy-resp.js","sha256":"3ef9be7167ca1f023bfce0503cb034e7761032e5c37261b798a532ad9b570faf","tlsh":"ff5112702f4055a6139517f75f3b50cae2a68c59b3d8e8cbd0222fa02db7216c6d3e34"},{"path":"redactor.js","sha256":"c7ce235223b740e717a7de6011767e0c0fb85aacd5bc693b2f1c7cdbca10fcbc","tlsh":"62d11480aee5d1c446985cebbcd39759e1235c2f70ed491cda019b2d3ab562bb3c8732"},{"path":"seed.js","sha256":"a27411025b8d3f80436e9977a53f9b7e6c3110eee0937158c24e2e67b68b2acf","tlsh":"e0511e14a790154c16e1672e7d7542c4e42c88a1bcc48b6af8e49bb63cc4b2b5272df3"},{"path":"shims.js","sha256":"3326adf1ec19436bff2e012db250a6fc596b939746dacb7a7f3ddec818972d9f","tlsh":"5272a86792fb132089b3b56e5b4f6414212a91233108ed543e8c924c9f977249bf2afd"},{"path":"simulate.js","sha256":"0c0ce434f22f9846651216aafad0fca6da933f23cae407d318480f297e146847","tlsh":"f6e1eb58cb28c29cd1064b3697788548e6168f49f790a780b188ff68dd4a73b607fe73"},{"path":"sync.js","sha256":"d096e010c66a23c96dce6397b26f9f9ceffdac499707c9e758f74f7d70518448","tlsh":"ea72a6755fe015a823415fbfb22764dae762089d31c04ce7c04caf596d8232df6e1a79"},{"path":"tracker.js","sha256":"bdc3b501fc953c5c6b08befdd9dae91a8977706733cf06dd93edaaa2ea2b618e","tlsh":"44a295c16ed06bd933855bb77607f2d2e06e4cad728489c2d71c6f200e98313e2e9979"}],"package_integrity":[{"filename":"trimprompt-1.0.47.tgz","hashes":{"sha1":"a61cc700ed3489c11ed2e5587e74c4301311402b","sha512_sri":"sha512-k7Ua0KRpeXmq9tz2+6LCF0xi9Rn0n3Zvzx7y9ykzevl/29vYtPZ22+wmqTfij4667T7puTIIessndZvvvJxxIQ=="}}]}}}],"references":[{"type":"PACKAGE","url":"https://www.npmjs.com/package/trimprompt/v/1.0.47"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/trimprompt/v/1.0.35"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/trimprompt/v/1.0.49"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/trimprompt/v/1.0.46"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/trimprompt/v/1.0.42"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/trimprompt/v/1.0.48"}],"credits":[{"name":"Amazon Inspector","type":"FINDER","contact":["inspector-research@amazon.com"]}],"database_specific":{"malicious-packages-origins":[{"id":"IN-MAL-2026-016810","import_time":"2026-08-06T23:25:10.490856257Z","modified_time":"2026-08-06T19:42:17Z","sha256":"202ef6d02c8fa917e9515b448972c19a209007f858b17d236a74857f3fe4febb","source":"amazon-inspector","versions":["1.0.47"]},{"id":"IN-MAL-2026-016809","import_time":"2026-08-06T23:25:10.442964787Z","modified_time":"2026-08-06T19:42:11Z","sha256":"44b0545be2d2598356cefa07c8df64da915853163f46fecb11d6a31ddcaf7478","source":"amazon-inspector","versions":["1.0.35"]},{"id":"IN-MAL-2026-016811","import_time":"2026-08-06T23:25:10.547801071Z","modified_time":"2026-08-06T19:42:26Z","sha256":"75bc0ef6c073e7f04d7bb69e1c6a54f8d53e48042993a4a4aa5372eec440b346","source":"amazon-inspector","versions":["1.0.49"]},{"id":"IN-MAL-2026-016808","import_time":"2026-08-06T23:25:10.396984152Z","modified_time":"2026-08-06T19:42:01Z","sha256":"8f55cf35d1812a67b6ac706cdba8518c12f275128bfc4038bdb662ba9b2cc0d0","source":"amazon-inspector","versions":["1.0.46"]},{"id":"IN-MAL-2026-016807","import_time":"2026-08-06T23:25:10.306660455Z","modified_time":"2026-08-06T19:41:53Z","sha256":"985123aa1b6cd21f65dd0eb97d400c33864f2484a13642e91c91df11c1e8acbd","source":"amazon-inspector","versions":["1.0.42"]},{"id":"IN-MAL-2026-016812","import_time":"2026-08-06T23:25:10.57731701Z","modified_time":"2026-08-06T19:42:33Z","sha256":"d226a63b0176720ff59868271071d340722e035d854d57299aa1022d330df1d1","source":"amazon-inspector","versions":["1.0.48"]}]}}

数据来源:OpenSSF Malicious Packages · Apache-2.0