Your RSA-2048 keys break in 2030. Find every one of them before attackers do.
Malicious package

node-slotnpm

node-slot is a confirmed malicious npm package (MAL-2026-6191) that steals credentials and exfiltrates sensitive data (malicious versions 1.0.7, 1.0.8, 1.0.9). Do not install it — remove it immediately and rotate any exposed credentials.

Malicious code in node-slot (npm)

MAL-2026-6191
Immediate action
Remove the package, then rotate any secrets the build/runtime could reach.
npm uninstall node-slot

What this malware does

On npm install, package.json's postinstall hook executes node test.js which invokes code in index.js that performs two distinct attacks on the installer machine. (1) Credential exfiltration: the package walks the user's home directory on Unix or every drive letter A:..Z: on Windows, recursively collecting files matching remotely-supplied patterns from /api/scan-patterns with extensions including.env,.json,.toml,.pdf,.doc,.docx,.xlsx (e.g..env, config.toml, id.json), and POSTs them as multipart uploads along with the OS username and platform to https://datasecure-service.vercel.app/api/v1. (2) SSH backdoor: on Linux, the package fetches an attacker-controlled SSH public key from https://datasecure-service.vercel.app/api/ssh-key, appends it to ~/.ssh/authorized_keys via fs.appendFileSync(authKeys, sshKey + '\n', { mode: 0o600 }), then runs sudo chown -R <user>:<user> <sshDir>, sudo ufw enable, and sudo ufw allow 22/tcp to ensure inbound port 22 is reachable. Outbound HTTP requests use a spoofed User-Agent: polymarket-bot/0.1 to appear benign. The package has no legitimate documented purpose; the name 'node-slot' is a generic-sounding cover for full credential harvest plus durable remote shell access on any developer or CI machine that installs it.

Any computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.

Malicious versions

3 flagged
1.0.71.0.81.0.9

Indicators of compromise (SHA-256)

91f23a964fca4e1984aecce2dbc51fc6bfa1ffe77725ee5f0e8d2f7a5c5514d8
29e2c334b81c9e7d99e3a10a98028254a2a2f411110be455896d4c4a5eff23ea
0d71bcdec983467ab6a47b538e524abc1cdafc98b411761bffb375be17d72009
aec74f2868718f8b4f13aaa5fcb5880987196602c649a2f550a4816d21cf4f62

Detection & response playbook

Credential / info stealer
  1. Find it

    Scan your lockfiles (package-lock.json, pnpm-lock.yaml, yarn.lock, requirements.txt, poetry.lock, etc.) and build artifacts for node-slot (3 malicious versions). O3 Security's supply-chain scanner checks every dependency against known-malicious package intelligence at install time and in CI, flagging node-slot across your stack and pipelines.

  2. If you installed it — respond

    node-slot is built to steal secrets, so assume every credential the build or runtime could read is compromised. Remove it from your project and lockfile, then rotate ALL exposed secrets — npm/registry tokens, cloud keys, CI/CD secrets, SSH keys, and any .env values — from a known-clean machine. Audit logs for unauthorized use of those credentials.

  3. Did it already run?

    If node-slot was ever installed, its post-install/runtime payload may have already executed. O3's L7 egress monitoring and runtime eBPF sensors detect the credential exfiltration or command-and-control callback after install and block the malicious outbound channel, so you catch and contain the actual compromise — not just the presence of the package.

  4. How O3 protects you

    O3 blocks node-slot before install through its supply-chain scanner, and if it has already run, detects and severs the exfiltration or C2 callback at runtime through L7 egress monitoring and eBPF.

Frequently asked questions

No. node-slot on npm has been identified as a malicious package (versions 1.0.7, 1.0.8, 1.0.9 flagged). It should be removed immediately — do not install or keep it in your dependency tree.

Campaign

IN-MAL-2026-007056GHSA-9243-vwcg-mpf3IN-MAL-2026-007341IN-MAL-2026-007414

References

Credits

  • Amazon Inspector · finder

Detect & block this

O3 blocks node-slot-class packages before install and in CI — and if it already ran, its runtime egress monitoring catches the credential exfiltration and severs the channel.

Explore

node-slot (npm) malicious package — MAL-2026-6191 | O3 Security