Netskope Threat Labs

UaParserJs

ATP Sandbox Adv. HeuristicsAV

UaParserJs is a popular JavaScript library for parsing browser user agent strings that cyberattackers compromised in 2016 to inject cryptocurrency mining code into websites that loaded it. The incident is an early example of open source supply chain attacks, and the malicious versions pushed mining scripts to millions of downstream visitors before the maintainers regained control.

First seen
February 2022
Last seen
September 2026
Alert Name
DeepScan:Generic.UaParserJs.B.FFFFFFFE
Dump:Generic.UaParserJs.B.FFFFFFFE
Generic.UaParserJs.A.000CDE9A
Generic.UaParserJs.A.012CCDFB
Generic.UaParserJs.A.1C3EC448
Generic.UaParserJs.A.264B471F
Generic.UaParserJs.A.28417B6C
Generic.UaParserJs.A.44B1F520
Generic.UaParserJs.A.55E0AB11
Generic.UaParserJs.A.6263F46A