Hostile 100% javascript Download

@nx/enterprise-cloud 3.2.0

postinstall exfiltrates credentials, sabotages system

Appends a power command to a shell profileHarvested environment pushed to a GitHub repo

Also flagged by osv (MAL-2025-41437: Malicious code in @nx/enterprise-cloud (npm)) +3 more.

Evidence

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.