diff --git a/osv/malicious/.id-allocator b/osv/malicious/.id-allocator index a01310a18..30f2b9295 100644 --- a/osv/malicious/.id-allocator +++ b/osv/malicious/.id-allocator @@ -1 +1 @@ -0affa6a1386f7acc3ab617fa43e6752f5377e02322483f75e88e8ec835745202 \ No newline at end of file +2531b5dd309787a220b04ec754c54d1a59752a4e142acd9888c71a2afff9cfdb \ No newline at end of file diff --git a/osv/malicious/npm/innocent-package/MAL-0000-ossf-package-analysis-6fc7d792ebeefb0b.json b/osv/malicious/npm/innocent-package/MAL-2025-31.json similarity index 69% rename from osv/malicious/npm/innocent-package/MAL-0000-ossf-package-analysis-6fc7d792ebeefb0b.json rename to osv/malicious/npm/innocent-package/MAL-2025-31.json index 40366dfae..95c3d0e38 100644 --- a/osv/malicious/npm/innocent-package/MAL-0000-ossf-package-analysis-6fc7d792ebeefb0b.json +++ b/osv/malicious/npm/innocent-package/MAL-2025-31.json @@ -2,9 +2,9 @@ "modified": "2025-01-07T16:41:34Z", "published": "2025-01-07T16:41:34Z", "schema_version": "1.5.0", - "id": "", + "id": "MAL-2025-31", "summary": "Malicious code in innocent-package (npm)", - "details": "The OpenSSF Package Analysis project identified 'innocent-package' @ 1.0.3 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n", + "details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (6fc7d792ebeefb0b83aeaecc6964d6288dced704804e70e6d7531b6a6dffc4a2)\nThe OpenSSF Package Analysis project identified 'innocent-package' @ 1.0.3 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n", "affected": [ { "package": { @@ -29,10 +29,10 @@ "database_specific": { "malicious-packages-origins": [ { - "source": "ossf-package-analysis", - "sha256": "6fc7d792ebeefb0b83aeaecc6964d6288dced704804e70e6d7531b6a6dffc4a2", "import_time": "2025-01-07T16:43:45.01911972Z", "modified_time": "2025-01-07T16:41:34Z", + "sha256": "6fc7d792ebeefb0b83aeaecc6964d6288dced704804e70e6d7531b6a6dffc4a2", + "source": "ossf-package-analysis", "versions": [ "1.0.3" ]