{"id":"MAL-2026-10708","summary":"Malicious code in @aicommander/agent (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (9a0d4917f10db91a59e47821bfa2399801219a85da0a59b8596d85fd3931fc93)\n@aicommander/agent installs a remote-machine agent that opens an outbound WebSocket to the hardcoded relay https://aicommander.dev and executes shell commands received over that channel on the installer's host. The message handler dispatches received commands to child_process.spawn with shell:true, streaming stdout/stderr back to the relay. A session code shared with the remote operator authorizes arbitrary command execution as the agent's uid — root when installed as the documented systemd service. This is full-host remote code execution driven by a network-sourced party, regardless of the relay being a first-party vendor server; possession of the session code by any remote party equates to full control of the installer's machine.\n","modified":"2026-08-28T04:01:37.017792043Z","published":"2026-07-16T18:48:49Z","withdrawn":"2026-08-27T01:46:29.077021Z","database_specific":{"malicious-packages-origins":[{"sha256":"9a0d4917f10db91a59e47821bfa2399801219a85da0a59b8596d85fd3931fc93","source":"amazon-inspector","versions":["1.0.34"],"id":"IN-MAL-2026-010794","import_time":"2026-07-16T18:54:05.219419639Z","modified_time":"2026-07-16T18:48:49Z"}]},"references":[{"type":"PACKAGE","url":"https://www.npmjs.com/package/@aicommander/agent/v/1.0.34"}],"affected":[{"package":{"name":"@aicommander/agent","ecosystem":"npm","purl":"pkg:npm/%40aicommander/agent"},"versions":["1.0.34"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/withdrawn/npm/@aicommander/agent/MAL-2026-10708.json","indicators":{"package_integrity":[{"filename":"agent-1.0.34.tgz","hashes":{"sha512_sri":"sha512-C3KiJI38tV5WLbIoWHp1K5RIgwtm33tup78sAb3qbmk7Gs2Rdj1vd9zzgR5wekCLF3Wv0T9sRs/pnzq8kENvew==","sha1":"23870acf79412bebc5b5bb778a44dd53870ea280"}}],"evidence_files":[{"sha256":"a7a2ca5e293ce02362e09e4f31cecac3562dc1e02e6301ad1163b757c91a24df","tlsh":"38e23cf5b3b57177c3dd61a2e4664002d3ba06b0654a0028f2bced4bbb6464497bbf78","path":"dist/index.js"}]},"cwes":[{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"}]}}],"schema_version":"1.9.0","credits":[{"name":"Amazon Inspector","contact":["inspector-research@amazon.com"],"type":"FINDER"}]}