Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,638
Total Incidents

@dknzo/soonex-ai

npm

MAL-2026-4383

Malicious code in @dknzo/soonex-ai (npm)

Malware
May 2026

@tarojs/cli

npm

MAL-2026-4453

Malicious code in @tarojs/cli (npm)

Malware
May 2026

clsx-js

npm

MAL-2026-4531

Malicious code in clsx-js (npm)

Typosquat
May 2026

workrally

npm

MAL-2026-4732

Malicious code in workrally (npm)

Malware
May 2026

dabrius-utils

PyPI

MAL-2026-4176

Malicious code in dabrius-utils (PyPI)

Malware
May 2026

btd-smart

npm

MAL-2026-4501

Malicious code in btd-smart (npm)

Typosquat
May 2026

crypto-hash-sdk

npm

MAL-2026-4541

Malicious code in crypto-hash-sdk (npm)

Typosquat
May 2026

xorma-js

npm

MAL-2026-4734

Malicious code in xorma-js (npm)

Typosquat
May 2026

qr-code-styling-temp

npm

MAL-2026-4655

Malicious code in qr-code-styling-temp (npm)

Typosquat
May 2026

alya-baileys

npm

MAL-2026-4478

Malicious code in alya-baileys (npm)

Malware
May 2026

whiteboard-agent

npm

MAL-2026-4729

Malicious code in whiteboard-agent (npm)

Malware
May 2026

claude-all-config

npm

MAL-2026-4522

Malicious code in claude-all-config (npm)

Malware
May 2026

@shadanai/openclaw

npm

MAL-2026-4441

Malicious code in @shadanai/openclaw (npm)

Backdoor
May 2026

@bonsai-ai/claude-code

npm

MAL-2026-4370

Malicious code in @bonsai-ai/claude-code (npm)

Typosquat
May 2026

corelia

npm

MAL-2026-4536

Malicious code in corelia (npm)

Malware
May 2026

@bonsai-ai/claude-code-win32-x64

npm

MAL-2026-4371

Malicious code in @bonsai-ai/claude-code-win32-x64 (npm)

Malware
May 2026

open-agents-ai

npm

MAL-2026-4628

Malicious code in open-agents-ai (npm)

Malware
May 2026

superacli

npm

MAL-2026-4674

Malicious code in superacli (npm)

Backdoor
May 2026

@citely/mcp-server

npm

MAL-2026-4375

Malicious code in @citely/mcp-server (npm)

Malware
May 2026

prettier-sdk

npm

MAL-2026-4645

Malicious code in prettier-sdk (npm)

Typosquat
May 2026

cheaty-sync-bot

npm

MAL-2026-4518

Malicious code in cheaty-sync-bot (npm)

Backdoor
May 2026

bytecore

npm

MAL-2026-4503

Malicious code in bytecore (npm)

Backdoor
May 2026

durabletask

PyPI

MAL-2026-4174

Malicious code in durabletask (PyPI)

Malware
May 2026

@mc-xp/mc-monolith-js-src-package

npm

MAL-2026-4171

Malicious code in @mc-xp/mc-monolith-js-src-package (npm)

Malware
May 2026
Showing 2377 - 2400 of 228,638
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001