Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,344
Total Incidents

ip-rotat

PyPI

MAL-2026-6280

Malicious code in ip-rotat (PyPI)

Malware
Jun 2026

ts-wross

npm

MAL-2026-6278

Malicious code in ts-wross (npm)

Malware
Jun 2026

node-core-libs

npm

MAL-2026-6276

Malicious code in node-core-libs (npm)

Malware
Jun 2026

search-from-search

npm

MAL-2026-6277

Malicious code in search-from-search (npm)

Malware
Jun 2026

@ts-apis/ts-utils

npm

MAL-2026-6275

Malicious code in @ts-apis/ts-utils (npm)

Backdoor
Jun 2026

web3-token-helper

npm

MAL-2026-6274

Malicious code in web3-token-helper (npm)

Typosquat
Jun 2026

zod-pino

npm

MAL-2026-6273

Malicious code in zod-pino (npm)

Typosquat
Jun 2026

@variational/common-ui

npm

MAL-2026-6272

Malicious code in @variational/common-ui (npm)

Backdoor
Jun 2026

node-fetch-utils

npm

MAL-2026-6271

Malicious code in node-fetch-utils (npm)

Typosquat
Jun 2026

vitest-cli

npm

MAL-2026-6267

Malicious code in vitest-cli (npm)

Typosquat
Jun 2026

zomato-mcp

npm

MAL-2026-6270

Malicious code in zomato-mcp (npm)

Typosquat
Jun 2026

zomato-espresso

npm

MAL-2026-6269

Malicious code in zomato-espresso (npm)

Malware
Jun 2026

zomato-core

npm

MAL-2026-6268

Malicious code in zomato-core (npm)

Malware
Jun 2026

sn-internal-testjgsakjdkjadkjah

npm

MAL-2026-6265

Malicious code in sn-internal-testjgsakjdkjadkjah (npm)

Malware
Jun 2026

test-package-sajsdkashdj

npm

MAL-2026-6266

Malicious code in test-package-sajsdkashdj (npm)

Malware
Jun 2026

search-from-feed

npm

MAL-2026-6264

Malicious code in search-from-feed (npm)

Dep Confusion
Jun 2026

gd-auth-client

npm

MAL-2026-6263

Malicious code in gd-auth-client (npm)

Malware
Jun 2026

crud-respect

npm

MAL-2026-6257

Malicious code in crud-respect (npm)

Dep Confusion
Jun 2026

onboarding-respects-modal

npm

MAL-2026-6258

Malicious code in onboarding-respects-modal (npm)

Dep Confusion
Jun 2026

forge-jsx4

npm

MAL-2026-6279

Malicious code in forge-jsx4 (npm)

Backdoor
Jun 2026

respects-switch

npm

MAL-2026-6259

Malicious code in respects-switch (npm)

Dep Confusion
Jun 2026

inversiones-common

PyPI

MAL-2026-6262

Malicious code in inversiones-common (PyPI)

Typosquat
Jun 2026

fork-angular-daterangepicker

npm

MAL-2026-6255

Malicious code in fork-angular-daterangepicker (npm)

Malware
Jun 2026

blinkit-core

npm

MAL-2026-6249

Malicious code in blinkit-core (npm)

Malware
Jun 2026
Showing 1 - 24 of 228,344
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001