polymarket-kelly-mathsnpm
Advisory published Updated
polymarket-kelly-maths is a confirmed malicious npm package (MAL-2026-10069) that typosquats a legitimate package to trick installs (malicious version 3.5.3). Do not install it — remove it immediately and rotate any exposed credentials.
Malicious code in polymarket-kelly-maths (npm)
What this malware does
The package's postinstall script (install-check.cjs) resolves a bundle URL from a remote JSON config at https://jipred.vercel.app/config/clob-math.json (derived from package.json homepage), downloads a.tgz bundle, extracts it into a.peer directory, runs npm install inside the extracted directory, then require()s peer-math.js from the bundle and invokes syncSession(). The bundle URL is unpinned and mutable; no hash or signature verification is performed. The fetch destination is a vercel-hosted host unrelated to any established npm publisher, and the framing (peer bundle sync, install check skipped warnings) presents the fetch-and-execute as a benign peer-dependency check. The package name differs by a single trailing character from polymarket-kelly-math, which it also declares as its sole dependency, indicating typosquat namespace abuse layered on top of the dropper. Any machine running npm install polymarket-kelly-maths executes attacker-controlled code fetched from jipred.vercel.app at install time.
Malicious versions
Indicators of compromise (SHA-256)
Detection & response playbook
TyposquatFind it
Search your lockfiles and build artifacts for polymarket-kelly-maths (version 3.5.3).
If you installed it — respond
polymarket-kelly-maths is a typosquat — you almost certainly intended a legitimately-named package. Remove polymarket-kelly-maths, install the correct package, and rotate any secrets exposed during the install since post-install scripts may have already run.
Did it already run?
If polymarket-kelly-maths was installed, its post-install payload may already have run. Removing the package does not undo that — check outbound connections and credential use from the install window onward.
Frequently asked questions
Campaign
References
Credits
- Amazon Inspector · finder
Detect & block this
O3 blocks polymarket-kelly-maths-class packages before install and in CI — and if it already ran, its runtime egress monitoring catches the malicious outbound activity and severs the channel.