StepSecurity Logo
StepSecurity
  • Get Started

  • Overview

  • Workflow Runs

    Baseline

    Detections

    Suppression Rules

    Policy Store

    Self Hosted Runners

  • Apps & PATs

  • Action Secrets

  • Settings

  1. compromised-packages
  2. Analyze pgserve Compromised Package

Jobs

  • install-compromised-package

install-compromised-package

Harden-runner policy:
audit
Start time:22 Apr 2026 01:20:29 GMTRunner name:-Duration:46sJob labels:ubuntu-latest
Show:
Show all steps
StepPIDProcessDestinationPortStatus
Install compromised pgserve 1.1.13 (postinstall fires automatically)
2366envnpm Registryregistry.npmjs.orgAPI Calls26443Allowed22 Apr 2026 01:20:37
Install compromised pgserve 1.1.13 (postinstall fires automatically)
2407/opt/hostedtoolcache/node/20.20.2/x64/bin/nodetelemetry.api-monitor.com443Attack Blocked22 Apr 2026 01:20:42
Install compromised pgserve 1.1.13 (postinstall fires automatically)
2407/opt/hostedtoolcache/node/20.20.2/x64/bin/nodecjn37-uyaaa-aaaac-qgnva-cai.raw.icp0.io443Attack Blocked22 Apr 2026 01:20:42