Open-source atomic malware analysis

Analyze another

crypto-random-string 2.0.0

UNKNOWN
Verdict: BENIGN
“Generate a cryptographically strong random string”
Mal-ecule
H(Os)Md(Pa)
Size 1.9 KB download unavailable
First seen 5 days ago
Analyzed 2 days ago
Package pkg:npm/[email protected]
Ecosystem javascript

Referenced by 7 samples

Objectives

component severity, 80% confident.
supply-chain/install-hook/package Repository uses GitHub shorthand format

Micro-behaviors

notable severity, 72% confident.
os/random Node.js cryptographic random-value generation
component severity, 90% confident.
communications/url Encoded URL public documentation

Metadata

notable severity, 90% confident.
package/manifest Repository uses owner/project coordinate
baseline severity, 90% confident.
file/profile Common UI language-code pair
baseline severity, 99% confident.
lang TypeScript declaration file
baseline severity, 100% confident.
package package.json defines a package version
baseline severity, 95% confident.
package/files Manifest sits at npm publish root
baseline severity, 100% confident.
package/quality package.json defines a package name
component severity, 100% confident.
file/extension JavaScript source filename extension
component severity, 85% confident.
package/testing/presence File is a test or type-declaration source file

Identity

SHA-256 5568339dadf0c073bb4380c1f59a1c537045c2edaac445858d1127d6f9efcfaa
Canonical SHA-256 4c9d8c4a81cc7b450e6a3be7a72c0d866d81a39b678bfc75ab0f0c924a0a751e
Filename [email protected]
Package crypto-random-string
Version 2.0.0
PURL pkg:npm/[email protected]

Origin

Source x
Feed aur.archlinux.org
Ecosystem javascript
Domain npmjs.org
URL https://registry.npmjs.org/crypto-random-string/-/crypto-random-string-2.0.0.tgz

Timeline

First seen 2 Aug 2026 00:11 UTC
First analyzed 2 Aug 2026 00:12 UTC
Last analyzed 4 Aug 2026 10:50 UTC
Last updated 4 Aug 2026 10:48 UTC

Labeling

Label unknown
Traits version 0ea32