malicious-packages database. There is no coordinated-disclosure window (the maintainer is the attacker). codelake never stores raw payloads — only the detection rule, file:line, and IOCs.
mecord-connect — remote-operator credential access behind a "ChatGPT automation" cover
Native Windows helpers decrypt the user's DPAPI-protected secrets and drive the browser under a mandatory remote operator relay.
mecord-connect version 2.0.2 presents itself as a ChatGPT automation tool. In reality it bundles native Windows helper binaries and runs them under a mandatory remote WebSocket operator relay: wss://operator.splcart.in/device (OPERATOR_RELAY_REQUIRED=1), reporting back to https://operator.splcart.in/v1/device-result.
The decisive signal is operator-windows-dpapi.exe — DPAPI decrypts Windows-protected secrets, i.e. the browser's saved cookies and passwords. A legitimate automation tool has no reason to decrypt the user's existing stored credentials for a remote operator. Combined with operator-windows-uia.exe (UI automation) and Chrome DevTools on 127.0.0.1:9222, the remote operator gains credential access and full device/browser control.
wss://operator.splcart.in/device · result → operator.splcart.in/v1/device-result · pairing auth.splcart.in/pairoperator-windows-dpapi.exe — decrypts Windows DPAPI-protected secrets (browser cookies/passwords)operator-windows-uia.exe (UI automation) + operator-windows-path-lease.exe127.0.0.1:9222Named publicly: the "ChatGPT automation" framing is a cover for remote-operator credential access. The risk is to whoever installs it — their stored credentials and browser sessions are exposed to the operator.