← all advisories

SKA-2026-0012

critical · type: malicious · published 2026-07-22T00:00:00Z · modified 2026-07-31T21:10:00Z

rankaj bundled a JavaScript payload that reads trusted AI service configuration and exfiltrates stolen data to an attacker-controlled webhook.

Behaviors

Artifacts

EcosystemNamePublisherSHA-256
clawhubrankaj

References