Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

215,575
Total Incidents

@fed-sofia/jetify

npm

MAL-2026-6619

Malicious code in @fed-sofia/jetify (npm)

Malware
Jun 2026

@img-hls/vtt.js

npm

MAL-2026-6628

Malicious code in @img-hls/vtt.js (npm)

Malware
Jun 2026

@meego-progressive/cdk

npm

MAL-2026-6632

Malicious code in @meego-progressive/cdk (npm)

Malware
Jun 2026

@multformats/multiaddr

npm

MAL-2026-6634

Malicious code in @multformats/multiaddr (npm)

Malware
Jun 2026

@rakuten-rewards/messaging-sdk

npm

MAL-2026-6640

Malicious code in @rakuten-rewards/messaging-sdk (npm)

Malware
Jun 2026

@rakuten-rewards/messaging-sdk-js

npm

MAL-2026-6641

Malicious code in @rakuten-rewards/messaging-sdk-js (npm)

Malware
Jun 2026

@services-lib/application-http-client

npm

MAL-2026-6647

Malicious code in @services-lib/application-http-client (npm)

Malware
Jun 2026

@sentryx-libraries/auth-interceptor

npm

MAL-2026-6646

Malicious code in @sentryx-libraries/auth-interceptor (npm)

Malware
Jun 2026

@reference-web/pmp-i18n

npm

MAL-2026-6643

Malicious code in @reference-web/pmp-i18n (npm)

Malware
Jun 2026

@partner-apps/ui

npm

MAL-2026-6636

Malicious code in @partner-apps/ui (npm)

Malware
Jun 2026

@rmlibrary/formatting

npm

MAL-2026-6645

Malicious code in @rmlibrary/formatting (npm)

Malware
Jun 2026

@live-backstage-im/communication-chat

npm

MAL-2026-6630

Malicious code in @live-backstage-im/communication-chat (npm)

Malware
Jun 2026

@finantix/webcomponents

npm

MAL-2026-6620

Malicious code in @finantix/webcomponents (npm)

Malware
Jun 2026

@gallup/pc-utils

npm

MAL-2026-6622

Malicious code in @gallup/pc-utils (npm)

Malware
Jun 2026

@huobi-ui/activity-components

npm

MAL-2026-6627

Malicious code in @huobi-ui/activity-components (npm)

Malware
Jun 2026

@experian-shared/services

npm

MAL-2026-6618

Malicious code in @experian-shared/services (npm)

Malware
Jun 2026

@lexisnexisrisk/insider-threat-platform

npm

MAL-2026-6629

Malicious code in @lexisnexisrisk/insider-threat-platform (npm)

Malware
Jun 2026

ltididp1

npm

MAL-2026-6665

Malicious code in ltididp1 (npm)

Malware
Jun 2026

@gm-rvg/root-config

npm

MAL-2026-6624

Malicious code in @gm-rvg/root-config (npm)

Malware
Jun 2026

alpine-csp

npm

MAL-2026-6653

Malicious code in alpine-csp (npm)

Malware
Jun 2026

@anna-money/anna-web-lib

npm

MAL-2026-6600

Malicious code in @anna-money/anna-web-lib (npm)

Malware
Jun 2026

gel-bootstrap

npm

MAL-2026-6663

Malicious code in gel-bootstrap (npm)

Malware
Jun 2026

@sumoinc/trashpanda

npm

MAL-2026-6650

Malicious code in @sumoinc/trashpanda (npm)

Malware
Jun 2026

wac-atl-context

npm

MAL-2026-6671

Malicious code in wac-atl-context (npm)

Malware
Jun 2026
Showing 97 - 120 of 215,575
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001