{"id":"MAL-2026-4648","summary":"Malicious code in promptbook-cli (npm)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (f428561fb8f2d776b815262884ea9cb4fd1f39f616adbd0716ce64377d44ca38)\ndist/api.js contains a hardcoded outbound fetch to https://promts.newtechcompany.ru that carries data derived from process.env. The destination is an unaffiliated.ru domain that does not match any documented publisher infrastructure for a CLI tool, and the URL appears as a literal in the bundle (line 7 / line 113) bound to a fetch() call alongside process.env reads. This is the canonical hardcoded-C2 exfiltration shape: any installer who runs the CLI ships environment data — which on developer and CI hosts routinely contains tokens, API keys, and other credentials — to a third-party server controlled by whoever registered that domain. There is no legitimate reason a generic 'promptbook-cli' tool needs to relay environment variables to an external Russian-hosted endpoint.\n","modified":"2026-05-27T00:32:09.945554736Z","published":"2026-05-20T05:38:04Z","withdrawn":"2026-05-26T18:50:24Z","database_specific":{"malicious-packages-origins":[{"import_time":"2026-05-26T05:50:42.351071168Z","modified_time":"2026-05-20T05:38:04Z","sha256":"f428561fb8f2d776b815262884ea9cb4fd1f39f616adbd0716ce64377d44ca38","source":"amazon-inspector","versions":["0.1.0"],"id":"IN-MAL-2026-003471"}]},"references":[{"type":"PACKAGE","url":"https://www.npmjs.com/package/promptbook-cli/v/0.1.0"}],"affected":[{"package":{"name":"promptbook-cli","ecosystem":"npm","purl":"pkg:npm/promptbook-cli"},"versions":["0.1.0"],"database_specific":{"cwes":[{"cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature.","name":"Embedded Malicious Code"}],"indicators":{"evidence_files":[{"sha256":"01771ebfde18cad552e04d2a648e4268e9ae412d0d1c054bccf9472b750bf30c","tlsh":"4891417a22f73511059bb4f9072fa0616968f40b3329c981ba5d9b806fe5038d4b3fec","path":"dist/api.js"}],"package_integrity":[{"hashes":{"sha1":"3b187ea599ea262e91749a3b86f53e9a36eed161","sha512_sri":"sha512-3287+dYCwObAfA13bgVRpqtIxHCGbtktyrsiuo5qiejNxllSvnB19wmHDepEVFVN8BYI6eIRV+MfQlHXTT2igg=="},"filename":"promptbook-cli-0.1.0.tgz"}]},"source":"https://github.com/ossf/malicious-packages/blob/main/osv/withdrawn/npm/promptbook-cli/MAL-2026-4648.json"}}],"schema_version":"1.7.5","credits":[{"name":"Amazon Inspector","contact":["actran@amazon.com"],"type":"FINDER"}]}