Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

215,575
Total Incidents

express-initial

npm

MAL-2026-6543

Malicious code in express-initial (npm)

Malware
Jun 2026

db-query-log

npm

MAL-2026-6539

Malicious code in db-query-log (npm)

Malware
Jun 2026

db-rake

npm

MAL-2026-6540

Malicious code in db-rake (npm)

Malware
Jun 2026

db-plog

npm

MAL-2026-6538

Malicious code in db-plog (npm)

Malware
Jun 2026

@krentzen/buffer-reverse

npm

MAL-2026-6536

Malicious code in @krentzen/buffer-reverse (npm)

Malware
Jun 2026

gptmini

npm

MAL-2026-6537

Malicious code in gptmini (npm)

Malware
Jun 2026

disksweep

npm

MAL-2026-6535

Malicious code in disksweep (npm)

Malware
Jun 2026

@appupdate/cdn-sync

npm

MAL-2026-6531

Malicious code in @appupdate/cdn-sync (npm)

Malware
Jun 2026

react-dynammic-table-component

npm

MAL-2026-6534

Malicious code in react-dynammic-table-component (npm)

Malware
Jun 2026

react-dynamic-table-compenent

npm

MAL-2026-6533

Malicious code in react-dynamic-table-compenent (npm)

Typosquat
Jun 2026

chai-as-assured

npm

MAL-2026-6532

Malicious code in chai-as-assured (npm)

Malware
Jun 2026

xrblocks-remote-control

npm

MAL-2026-6530

Malicious code in xrblocks-remote-control (npm)

Typosquat
Jun 2026

@immobiliarelabs/backstage-plugin-gitlab-backend

npm

MAL-2026-6527

Malicious code in @immobiliarelabs/backstage-plugin-gitlab-backend (npm)

Malware
Jun 2026

@immobiliarelabs/backstage-plugin-ldap-auth-backend

npm

MAL-2026-6529

Malicious code in @immobiliarelabs/backstage-plugin-ldap-auth-backend (npm)

Malware
Jun 2026

@immobiliarelabs/backstage-plugin-ldap-auth

npm

MAL-2026-6528

Malicious code in @immobiliarelabs/backstage-plugin-ldap-auth (npm)

Malware
Jun 2026

@immobiliarelabs/backstage-plugin-gitlab

npm

MAL-2026-6526

Malicious code in @immobiliarelabs/backstage-plugin-gitlab (npm)

Malware
Jun 2026

@carvana.authentication-flows/shared

npm

MAL-2026-6521

Malicious code in @carvana.authentication-flows/shared (npm)

Malware
Jun 2026

express-plugin

npm

MAL-2026-6523

Malicious code in express-plugin (npm)

Malware
Jun 2026

ts-einkle

npm

MAL-2026-6524

Malicious code in ts-einkle (npm)

Backdoor
Jun 2026

ts-einkle-slot

npm

MAL-2026-6525

Malicious code in ts-einkle-slot (npm)

Malware
Jun 2026

@epsteinlovekids483/crossmint-wallets-sdk-pentest

npm

MAL-2026-6522

Malicious code in @epsteinlovekids483/crossmint-wallets-sdk-pentest (npm)

Malware
Jun 2026

rollup-plugin-polyfill-connect

npm

MAL-2026-6520

Malicious code in rollup-plugin-polyfill-connect (npm)

Malware
Jun 2026

react-icon-svgs

npm

MAL-2026-6519

Malicious code in react-icon-svgs (npm)

Malware
Jun 2026

ai-node-agent

npm

MAL-2026-6517

Malicious code in ai-node-agent (npm)

Malware
Jun 2026
Showing 193 - 216 of 215,575
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001