npm · Malicious package advisory
Malwaredstny
MAL-2026-1719
Malicious code in dstny (npm)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (f626d298a9c4cfb632526a78be22b6af5d196ba9b736ecfe9eab8daa2df73e99) The package dstny was found to contain malicious code.
Compromised versions (1)
- 999.0.0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.