Skip to content
supplychainattack.orgSupply chain attack incident catalog
resolvedcritical

Malicious code in abina-amugmi-amau (npm)

The npm package abina-amugmi-amau contains malicious code designed to automatically generate and republish derivative packages with randomized names to inflate tea protocol token rewards. The payload modifies package.json, removes private flags, and continuously pollutes the npm registry with variants.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
Registry-wide pollution; affects developers who install this package and any auto-generated derivative packages
Ecosystems
Attack vectors
Affected entities
  • abina-amugmi-amaunpm package containing malicious autopublish scripts

The npm package abina-amugmi-amau was identified as part of a coordinated campaign to flood the npm registry with malicious packages tied to the tea.xyz token reward program. The package contains autopublish scripts (auto.js, autopublish.js, autopublish2.js, autopublish3.js) that execute automatically upon installation.

The malicious payload modifies the package.json file to remove private flags and alter version numbers. It then generates random package names, many with Indonesian-themed variants, and automatically republishes these derivative packages to the npm registry. This mechanism is designed to artificially inflate developer reputation scores and claim token rewards from the tea protocol.

The attack represents a form of registry pollution and supply chain compromise, as any developer installing this package would unknowingly participate in the generation and distribution of malicious packages. The incident was identified and credited to the OpenSSF's malicious-packages repository.

Remediation involves removing the package from the npm registry, auditing systems that may have installed it, and reviewing any packages auto-generated as a result of its execution.

Indicators of compromise

Packages
  • abina-amugmi-amau

Remediation

  • Remove abina-amugmi-amau and any auto-generated derivative packages from npm
  • Audit npm installations for this package and any generated variants
  • Review package.json files for unauthorized modifications or version changes
  • Monitor for suspicious autopublish scripts in project dependencies
  • Report any auto-generated packages to npm security team for removal

Sources

  1. GitHub Advisory GHSA-6cc6-rhg9-mcw2 · GitHub Advisory Database

Cite this entry

"Malicious code in abina-amugmi-amau (npm)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed August 14, 2026; last updated August 14, 2026. https://supplychainattack.org/incident/malicious-code-in-abina-amugmi-amau-npm-1foa9j

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. containedcritical

    Malicious code in pfp-forms-sme-loan (npm)

    The npm package pfp-forms-sme-loan contains malicious code that executes a hidden loader on import, downloading and running platform-specific native payloads from attacker-controlled Cloudflare Workers hosts or reconstructing them via DNS TXT records under well1.site. Any system that imported this package should be considered compromised.

    npmCompromised packageMalicious commit
  2. resolvedcritical

    Malicious code in twilio-hackerone-poc-afe6937c (npm)

    The npm package twilio-hackerone-poc-afe6937c contained malicious preinstall/postinstall scripts that exfiltrate host metadata and environment variables to an external webhook, spawn a persistent daemon process, and attempt cross-tenant code injection in shared environments.

    npmCompromised packageMalicious commit
  3. containedcritical

    Malicious code in @wololasod/tiny-id (npm)

    The npm package @wololasod/tiny-id contained obfuscated malicious code that downloads and executes platform-specific remote executables on Windows and Linux systems. The dropper was embedded in both the main entry point (dist/index.cjs) and the TypeScript types file (dist/index.d.ts), disguised as a tiny ID generator.

    npmCompromised packageMalicious commit
  4. containedcritical

    Malicious code in akamaijs-sensor (npm)

    The npm package akamaijs-sensor contained malicious code that executed arbitrary JavaScript via hidden Unicode-encoded bytes and established a command-and-control channel through a Google Calendar dead-drop. The package was designed to run attacker-authored code in the consumer's Node process when the sensor() API was called.

    npmCompromised packageMalicious commit