{"id":"MAL-2026-1695","summary":"Malicious code in company-billing-sdk-bugbounty (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (d7e0804c0e591fea0c08e9a93b6aaff5803abac7fd387da23dbfb557009397e6)\nThe package company-billing-sdk-bugbounty was found to contain malicious code.\n","modified":"2026-03-23T05:41:12.146358Z","published":"2026-03-18T12:44:26Z","database_specific":{"malicious-packages-origins":[{"source":"reversing-labs","id":"RLMA-2026-01213","import_time":"2026-03-19T12:18:42.86875125Z","versions":["99.99.99"],"sha256":"34d897dbb1811cc60a5560bd9fb9772abbd38c560d821add2f1cdbbd2f7e8e35","modified_time":"2026-03-18T12:44:26Z"},{"source":"amazon-inspector","modified_time":"2026-03-23T05:11:41Z","import_time":"2026-03-23T05:14:02.119963925Z","versions":["99.99.99"],"sha256":"d7e0804c0e591fea0c08e9a93b6aaff5803abac7fd387da23dbfb557009397e6"}]},"affected":[{"package":{"name":"company-billing-sdk-bugbounty","ecosystem":"npm","purl":"pkg:npm/company-billing-sdk-bugbounty"},"versions":["99.99.99"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/company-billing-sdk-bugbounty/MAL-2026-1695.json"}}],"schema_version":"1.7.5","credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"},{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}