Skip to content

Commit

Permalink
Assign IDs
Browse files Browse the repository at this point in the history
  • Loading branch information
github-actions committed Jan 24, 2025
1 parent 5575607 commit 787137f
Show file tree
Hide file tree
Showing 57 changed files with 225 additions and 225 deletions.
2 changes: 1 addition & 1 deletion osv/malicious/.id-allocator
Original file line number Diff line number Diff line change
@@ -1 +1 @@
97aea52d4c01d7c67c08858f28b1f945e51b2998e8ce9c44b44e942f0ed9edf6
63bb83ab132f9ae8bc7489cee33079759d8380cfc035b4e149abc900876efe40
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:37:32Z",
"published": "2025-01-24T04:37:32Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-435",
"summary": "Malicious code in dropbox-connect (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-connect' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (afdb751e57da5540b343e220fab07e5aa40ad53e4bf33fbadb1e8f53d8469261)\nThe OpenSSF Package Analysis project identified 'dropbox-connect' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "afdb751e57da5540b343e220fab07e5aa40ad53e4bf33fbadb1e8f53d8469261",
"import_time": "2025-01-24T05:05:42.594133195Z",
"modified_time": "2025-01-24T04:37:32Z",
"sha256": "afdb751e57da5540b343e220fab07e5aa40ad53e4bf33fbadb1e8f53d8469261",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:37:15Z",
"published": "2025-01-24T04:37:15Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-436",
"summary": "Malicious code in dropbox-database (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-database' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (7e77ce2fd7298faebe08ecd823f0705a710d5aa18d8b81252b08f843ea7ccda2)\nThe OpenSSF Package Analysis project identified 'dropbox-database' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "7e77ce2fd7298faebe08ecd823f0705a710d5aa18d8b81252b08f843ea7ccda2",
"import_time": "2025-01-24T05:05:42.49747893Z",
"modified_time": "2025-01-24T04:37:15Z",
"sha256": "7e77ce2fd7298faebe08ecd823f0705a710d5aa18d8b81252b08f843ea7ccda2",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:40:45Z",
"published": "2025-01-24T04:40:45Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-437",
"summary": "Malicious code in dropbox-test (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-test' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (04b993977d88af38e781275c092c32e4a7e501af8a473cd7ca89289327052b44)\nThe OpenSSF Package Analysis project identified 'dropbox-test' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "04b993977d88af38e781275c092c32e4a7e501af8a473cd7ca89289327052b44",
"import_time": "2025-01-24T05:05:42.770977164Z",
"modified_time": "2025-01-24T04:40:45Z",
"sha256": "04b993977d88af38e781275c092c32e4a7e501af8a473cd7ca89289327052b44",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:40:45Z",
"published": "2025-01-24T04:40:45Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-438",
"summary": "Malicious code in dropbox-tests (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-tests' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (6b91e399de2020315c4cb5a23b17d10a7d6a0e882e45bb2bb92a92ce4d9b59b3)\nThe OpenSSF Package Analysis project identified 'dropbox-tests' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "6b91e399de2020315c4cb5a23b17d10a7d6a0e882e45bb2bb92a92ce4d9b59b3",
"import_time": "2025-01-24T05:05:42.867482149Z",
"modified_time": "2025-01-24T04:40:45Z",
"sha256": "6b91e399de2020315c4cb5a23b17d10a7d6a0e882e45bb2bb92a92ce4d9b59b3",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:40:43Z",
"published": "2025-01-24T04:40:43Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-439",
"summary": "Malicious code in dropbox-tools (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-tools' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (c179b3f5aca1f8765f782d15c2cd61ba18191a371bf5bb6ee4f52543dec51dff)\nThe OpenSSF Package Analysis project identified 'dropbox-tools' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "c179b3f5aca1f8765f782d15c2cd61ba18191a371bf5bb6ee4f52543dec51dff",
"import_time": "2025-01-24T05:05:42.674618643Z",
"modified_time": "2025-01-24T04:40:43Z",
"sha256": "c179b3f5aca1f8765f782d15c2cd61ba18191a371bf5bb6ee4f52543dec51dff",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:40:48Z",
"published": "2025-01-24T04:40:48Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-440",
"summary": "Malicious code in dropbox-user (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-user' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (9aec1934d02825dd997f79de8c8dd0dc5d7d02a9a9bbdb024fbe0e87474660fa)\nThe OpenSSF Package Analysis project identified 'dropbox-user' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "9aec1934d02825dd997f79de8c8dd0dc5d7d02a9a9bbdb024fbe0e87474660fa",
"import_time": "2025-01-24T05:05:42.955032235Z",
"modified_time": "2025-01-24T04:40:48Z",
"sha256": "9aec1934d02825dd997f79de8c8dd0dc5d7d02a9a9bbdb024fbe0e87474660fa",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:40:51Z",
"published": "2025-01-24T04:40:51Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-441",
"summary": "Malicious code in dropbox-utils (npm)",
"details": "The OpenSSF Package Analysis project identified 'dropbox-utils' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (9caae36a2824571fd25ea7bbd865ce6077410002b5011e825d2877095d171a40)\nThe OpenSSF Package Analysis project identified 'dropbox-utils' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "9caae36a2824571fd25ea7bbd865ce6077410002b5011e825d2877095d171a40",
"import_time": "2025-01-24T05:05:43.088947063Z",
"modified_time": "2025-01-24T04:40:51Z",
"sha256": "9caae36a2824571fd25ea7bbd865ce6077410002b5011e825d2877095d171a40",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:40:50Z",
"published": "2025-01-24T04:40:50Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-442",
"summary": "Malicious code in epicagames-admin (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-admin' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (80a148b27a48e0abff9456d60d3fcd31fcfb9f4896cc62f5542cc2d38ed8d830)\nThe OpenSSF Package Analysis project identified 'epicagames-admin' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "80a148b27a48e0abff9456d60d3fcd31fcfb9f4896cc62f5542cc2d38ed8d830",
"import_time": "2025-01-24T05:05:43.014358309Z",
"modified_time": "2025-01-24T04:40:50Z",
"sha256": "80a148b27a48e0abff9456d60d3fcd31fcfb9f4896cc62f5542cc2d38ed8d830",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:45:26Z",
"published": "2025-01-24T04:45:26Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-443",
"summary": "Malicious code in epicagames-event (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-event' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (239c65ac683effcf49a718bddbfb55558bda005f3ced3e41da4a815755d2fbf0)\nThe OpenSSF Package Analysis project identified 'epicagames-event' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "239c65ac683effcf49a718bddbfb55558bda005f3ced3e41da4a815755d2fbf0",
"import_time": "2025-01-24T05:05:43.559531446Z",
"modified_time": "2025-01-24T04:45:26Z",
"sha256": "239c65ac683effcf49a718bddbfb55558bda005f3ced3e41da4a815755d2fbf0",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:45:23Z",
"published": "2025-01-24T04:45:23Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-444",
"summary": "Malicious code in epicagames-gateway (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-gateway' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (4df1db6b95c60847eaebde5f3b4b42a3694104a5e068b12788eb82fc87dd245c)\nThe OpenSSF Package Analysis project identified 'epicagames-gateway' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "4df1db6b95c60847eaebde5f3b4b42a3694104a5e068b12788eb82fc87dd245c",
"import_time": "2025-01-24T05:05:43.321872079Z",
"modified_time": "2025-01-24T04:45:23Z",
"sha256": "4df1db6b95c60847eaebde5f3b4b42a3694104a5e068b12788eb82fc87dd245c",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:45:20Z",
"published": "2025-01-24T04:45:20Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-445",
"summary": "Malicious code in epicagames-internal (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-internal' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (fc59d3b62a1c4955443fe4f1a12d7199d6fac7265f9be6a21db6d7dfad0d99df)\nThe OpenSSF Package Analysis project identified 'epicagames-internal' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "fc59d3b62a1c4955443fe4f1a12d7199d6fac7265f9be6a21db6d7dfad0d99df",
"import_time": "2025-01-24T05:05:43.150621661Z",
"modified_time": "2025-01-24T04:45:20Z",
"sha256": "fc59d3b62a1c4955443fe4f1a12d7199d6fac7265f9be6a21db6d7dfad0d99df",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:45:29Z",
"published": "2025-01-24T04:45:29Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-446",
"summary": "Malicious code in epicagames-jira (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-jira' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (e836a4d6ddc3f5530076be7e40e7ea3ed241c0c7fb04dec0f12fff9ab4755e21)\nThe OpenSSF Package Analysis project identified 'epicagames-jira' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "e836a4d6ddc3f5530076be7e40e7ea3ed241c0c7fb04dec0f12fff9ab4755e21",
"import_time": "2025-01-24T05:05:43.674954384Z",
"modified_time": "2025-01-24T04:45:29Z",
"sha256": "e836a4d6ddc3f5530076be7e40e7ea3ed241c0c7fb04dec0f12fff9ab4755e21",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:45:23Z",
"published": "2025-01-24T04:45:23Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-447",
"summary": "Malicious code in epicagames-logger (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-logger' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (ca1ec871e8a317af62ecdd30f1d27fe970de87497a933c26105942deae71b64d)\nThe OpenSSF Package Analysis project identified 'epicagames-logger' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "ca1ec871e8a317af62ecdd30f1d27fe970de87497a933c26105942deae71b64d",
"import_time": "2025-01-24T05:05:43.380385721Z",
"modified_time": "2025-01-24T04:45:23Z",
"sha256": "ca1ec871e8a317af62ecdd30f1d27fe970de87497a933c26105942deae71b64d",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,9 +2,9 @@
"modified": "2025-01-24T04:45:29Z",
"published": "2025-01-24T04:45:29Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2025-448",
"summary": "Malicious code in epicagames-model (npm)",
"details": "The OpenSSF Package Analysis project identified 'epicagames-model' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (e0255f17a95ebab8a2dad34723e65be392d1d7bccd4bc5128ee0450c7ab67639)\nThe OpenSSF Package Analysis project identified 'epicagames-model' @ 999.9.9 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n",
"affected": [
{
"package": {
Expand All @@ -29,10 +29,10 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "e0255f17a95ebab8a2dad34723e65be392d1d7bccd4bc5128ee0450c7ab67639",
"import_time": "2025-01-24T05:05:43.767517066Z",
"modified_time": "2025-01-24T04:45:29Z",
"sha256": "e0255f17a95ebab8a2dad34723e65be392d1d7bccd4bc5128ee0450c7ab67639",
"source": "ossf-package-analysis",
"versions": [
"999.9.9"
]
Expand Down
Loading

0 comments on commit 787137f

Please sign in to comment.