{"id":"MAL-2026-4414","summary":"Malicious code in @onerjs/smart-filters (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (66a4578e888bb6e53b7a5df17aa093931f6aff50773efd2634819294538217ab)\nPackage is published under the @onerjs scope but self-describes as 'Babylon.js Smart Filter core' with repository metadata pointing at github.com/BabylonJS/Babylon.js. The source is a verbatim copy of @babylonjs/smart-filters with every import of @babylonjs/core rewritten to @onerjs/core (e.g., dist/index.js line 13: `export { Logger } from \"@onerjs/core/Misc/logger.js\";`), and package.json declares `peerDependencies: { \"@onerjs/core\": \"^7.47.3 || ^8.0.1\" }`. The @onerjs scope is a one-character-edit homoglyph squat of the well-known @babylonjs scope (top-tier 3D engine), and installers who type or copy this name from a poisoned tutorial are forced to also install @onerjs/core — a separate sibling package outside this tarball that substitutes for the legitimate @babylonjs/core. This tarball's own code is a benign mirror of the upstream library; the supply-chain harm is the dependency redirection: any code shipped under @onerjs/core executes in the installer's environment in place of @babylonjs/core. The combined signal — scope-level homoglyph of a top-100 package + identity-claim mismatch (description and repo cite Babylon.js while scope does not) + forced peerDependency on a parallel typosquat package — is the namespace-abuse delivery fingerprint.\n","modified":"2026-05-27T00:31:58.072964476Z","published":"2026-05-21T02:06:13Z","withdrawn":"2026-05-26T21:41:23Z","database_specific":{"malicious-packages-origins":[{"versions":["8.51.8"],"id":"IN-MAL-2026-004145","import_time":"2026-05-26T05:52:01.465255551Z","modified_time":"2026-05-22T06:15:27Z","sha256":"66a4578e888bb6e53b7a5df17aa093931f6aff50773efd2634819294538217ab","source":"amazon-inspector"},{"source":"amazon-inspector","versions":["8.51.7"],"id":"IN-MAL-2026-003702","import_time":"2026-05-26T05:51:08.494182113Z","modified_time":"2026-05-21T02:06:13Z","sha256":"ca8088dc94ff21e3e3ed2b494dd91773bc8bf23f80b68dbb4ed14a1ef5fd1484"}]},"references":[{"type":"PACKAGE","url":"https://www.npmjs.com/package/@onerjs/smart-filters/v/8.51.8"},{"type":"PACKAGE","url":"https://www.npmjs.com/package/@onerjs/smart-filters/v/8.51.7"}],"affected":[{"package":{"name":"@onerjs/smart-filters","ecosystem":"npm","purl":"pkg:npm/%40onerjs%2Fsmart-filters"},"versions":["8.51.8","8.51.7"],"database_specific":{"indicators":{"package_integrity":[{"filename":"smart-filters-8.51.8.tgz","hashes":{"sha512_sri":"sha512-7k2+XIpRIOwgyRdeF+v07aGqg5wJSa8zolO0wVOq+gu+8YnZTUhhKdGPdUlSwpylypVE7aJSVBp9S+nivPb0fQ==","sha1":"108a458bc38edfb6c45cb8bf85e29b9c805e31bc"}}],"evidence_files":[{"sha256":"791c3939a60f0bae1fbdf37b65af6c26f0232f5e66773ab2ec9fba412965d08c","tlsh":"c8318834c8692d7301c9a19558e99b46e27514475e84bc08339c506c0faf5af91ba3ac","path":"package.json"}]},"source":"https://github.com/ossf/malicious-packages/blob/main/osv/withdrawn/npm/@onerjs/smart-filters/MAL-2026-4414.json","cwes":[{"description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code","cweId":"CWE-506"},{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"}]}}],"schema_version":"1.7.5","credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"}]}