{"type":"bundle","id":"bundle--b0a8f868-47cf-5655-b3c2-96ee3a556d03","objects":[{"type":"campaign","spec_version":"2.1","id":"campaign--2da183a6-3492-5181-868f-bf5cdd0b2444","created":"2026-08-09T11:30:00.000Z","modified":"2026-08-09T11:20:00.000Z","name":"jscrambler npm package compromise","description":"Socket documented compromised jscrambler npm releases that introduced hidden native binaries and automatic execution paths, including a preinstall hook in early malicious versions and later import-time execution.","aliases":["jscrambler 8.14.0 compromise"],"first_seen":"2026-07-11T00:00:00.000Z","last_seen":"2026-07-11T18:34:32.000Z","objective":"Defensive public threat-intelligence record; see limitations and source references.","external_references":[{"source_name":"Socket: jscrambler supply-chain attack","url":"https://socket.dev/blog/jscrambler-supply-chain-attack"}]}]}