golang · Malicious package advisory
Malwaregithub.com/belatedplanet/hypert
GHSA-fcwr-pghv-36vp
Malicious code in github.com/belatedplanet/hypert (Go)
Details
**Severity:** Critical **Affected versions:** `> 0` --- _-= Per source details. Do not edit below this line.=-_ ## Source: google-open-source-security (ae6bd303b29130f3970f2f526b9c704e4fa0905fa4b3e015542213f4aaf5f701) Malcious typosquatting Go packages targeting Linux and macOS systems used to as a loader to download and run another malicious payload. **References:** - https://github.com/ossf/malicious-packages/blob/26c49c064c9462ff2e3e03ff1f77d613160e3397/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json - https://github.com/ossf/malicious-packages/blob/6aec0500e3123ad96d66040006eb6a8e60609d56/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json - https://github.com/ossf/malicious-packages/blob/a13a40ff863bab84b3f8b7b4a403e5533760db38/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json - https://socket.dev/blog/typosquatted-go-packages-deliver-malware-loader - https://github.com/ossf/malicious-packages/blob/f74ec115ff98d0b6e7642402da084d7a9d9a790b/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json - https://github.com/ossf/malicious-packages/blob/ffde2398bee5c960c53576070170a550a34d9f62/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json - https://github.com/ossf/malicious-packages/blob/610215649c741141a637ecdcf2615a0a4c263618/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json - https://github.com/ossf/malicious-packages/blob/a38ecee305c88a229e05893a0413264b62143ce2/osv/malicious/go/github.com/belatedplanet/hypert/MAL-2025-2544.json
Compromised versions (1)
- > 0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.