StepSecurity Logo
StepSecurity
⌘K
    • Get Started

    • Overview

    • Threat Center

      • Workflow Runs

      • Baseline

      • Detections

      • Suppression Rules

      • Policy Store

      • Self Hosted Runners

      • Installation

    • Action Secrets

    • Apps & PATs

  1. compromised-packages
  2. Analyze pgserve Compromised Package

Jobs

  • install-compromised-package

install-compromised-package

Harden-runner policy:
audit
Start time:22 Apr 2026 01:20:29 GMTRunner name:-Duration:46sJob labels:ubuntu-latest
Show:
Show all steps
StepPIDProcessDestinationPortStatus
Install compromised pgserve 1.1.13 (postinstall fires automatically)
2366envnpm Registryregistry.npmjs.orgAPI Calls26443Allowed22 Apr 2026 01:20:37
Install compromised pgserve 1.1.13 (postinstall fires automatically)
2407/opt/hostedtoolcache/node/20.20.2/x64/bin/nodetelemetry.api-monitor.com443Attack Blocked22 Apr 2026 01:20:42
Install compromised pgserve 1.1.13 (postinstall fires automatically)
2407/opt/hostedtoolcache/node/20.20.2/x64/bin/nodecjn37-uyaaa-aaaac-qgnva-cai.raw.icp0.io443Attack Blocked22 Apr 2026 01:20:42