Your RSA-2048 keys break in 2030. Find every one of them before attackers do.
Malicious package

axl-uinpm

Malicious code in axl-ui (npm) Remove it immediately and rotate any exposed credentials.

MAL-2026-5742
Immediate action
Remove the package, then rotate any secrets the build/runtime could reach.
npm uninstall axl-ui

What this malware does

[email protected] is a dependency-confusion squat targeting an internal package name. package.json declares a postinstall hook (node beacon.js) that fires automatically on npm install. beacon.js reads os.hostname() and transmits it to a hardcoded Burp Collaborator out-of-band host (tspeuj1fodn3cj8v30uck2fs4jaby1mq.oastify.com) via two channels: a DNS lookup of <nonce>.host.<collaborator> and an HTTPS POST with JSON body {pkg, nonce, host}. The version number 9.9.99 and the self-described "internal placeholder" description are the canonical dependency-confusion shape: any private build that resolves axl-ui from public npm will execute the beacon and leak the host identity to the attacker. Even if framed as a research proof-of-concept, the harm to installers is real — installer-side data leaves the build machine to an attacker-controlled endpoint without consent.

The OpenSSF Package Analysis project identified 'axl-ui' @ 9.9.99 (npm) as malicious.

It is considered malicious because:

  • The package communicates with a domain associated with malicious activity.

Malicious versions

1 flagged
9.9.99

Indicators of compromise (SHA-256)

6fbc071f0ee6323c87fa6be049a9b151217f7146605ef89b4494f7ef07e7d534
d1e69c230413d89069c5925f28b54066565427ccea31208d53820f2f8be0dc33
aca109fdc13102e60179b8d6c63a996da233e4910b6260da8838df727f33a64f

Frequently asked questions

No. axl-ui on npm has been identified as a malicious package (version 9.9.99 flagged). It should be removed immediately — do not install or keep it in your dependency tree.

Campaign

IN-MAL-2026-006367IN-MAL-2026-006368

References

Credits

  • Amazon Inspector · finder
  • OpenSSF: Package Analysis · finder

Scan your dependencies

O3 Security blocks malicious packages like this at install time and in CI.

Supply-chain protection