npm · Malicious package advisory
Malwarehachutis
GHSA-9rj9-xh7c-qqh8
Malicious code in hachutis (npm)
Details
**Severity:** Critical **Affected versions:** `= 1.0.6` ## Source: amazon-inspector (455f1d04545c9ed17722705fe61415d7e536e2800c2a3c588ab69985004c73b9) The tarball ships three undeclared prebuilt executables under bin/ (bin/cli, bin/cli-linux-amd64, and an 81 MB Bun-compiled bin/cli-http-linux) that are not exposed via package.json.bin. The manifest's only bin entry hatcher-env points to bin/cli.js, which is absent from the tarball, and the declared main src/index.js is an unrelated dotenv-style parser hardcoded to /home/hatch/test.dat with no reference to the shipped binaries. The bundled JS region of bin/cli-http-linux embeds the anonymous Cloudflare Tunnel host already-query-bacteria-agreed.trycloudflare.com adjacent to HTTP POST verbs, and the README instructs the installer to execute one of the./bin/ binaries at least once to 'activate the package in our systems.' Running the binary opens a channel from the installer's host to an attacker-controlled trycloudflare.com tunnel; the readable JS surface is a decoy for opaque native payloads whose actual behavior is not documented. --- Credit: [OpenSSF](https://github.com/ossf/malicious-packages) ([source](https://github.com/ossf/malicious-packages/blob/d9a451cbb73776aade5f2f5ad3ae60f5eb2524ec/osv/malicious/npm/hachutis/MAL-2026-16464.json)) **References:** - https://github.com/ossf/malicious-packages/blob/d9a451cbb73776aade5f2f5ad3ae60f5eb2524ec/osv/malicious/npm/hachutis/MAL-2026-16464.json - https://www.npmjs.com/package/hachutis/v/1.0.0 - https://www.npmjs.com/package/hachutis/v/1.0.6 - https://github.com/advisories/GHSA-9rj9-xh7c-qqh8
Compromised versions (1)
- = 1.0.6
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.