INTEL_REPORT
Snyk Blog — AppSec & supply chain · published 5/23/2026, 4:00:00 PM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
Laravel Lang Supply Chain Advisory Hundreds of historical Laravel Lang Packagist releases were republished with malicious code, putting Composer installs at risk of credential theft and secret exfiltration. Laravel Lang Supply Chain Advisory | Snyk You need to enable JavaScript to run this app. Skip to main content Platform Platform Snyk AI Security Platform Modern security in a single platform Snyk AI Workflows AI-driven workflows to secure applications DeepCode AI Purpose…
https://snyk.io/blog/laravel-lang-supply-chain-advisory
sha256:65fde532dcfebf66a17285a8bfd8149960b23fc6f09ab15ed5623cf471ab6f69
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.
| autoload.files |
| Open → |
| domain | flipboxstudio.info | Open → |
| domain | composer.json | Open → |
| domain | debugchromium.exe | Open → |
| domain | composer.lock | Open → |
| url | https://flipboxstudio\ | Open → |