Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

225,040
Total Incidents

neverinstallme

PyPI

MAL-2026-2686

Malicious code in neverinstallme (PyPI)

Malware
Apr 2026

tensorzero-node

npm

MAL-2026-2684

Malicious code in tensorzero-node (npm)

Malware
Apr 2026

@athena-ui-components/axios

npm

MAL-2026-2683

Malicious code in @athena-ui-components/axios (npm)

Malware
Apr 2026

@athena-ui-components/dashboard-widget

npm

MAL-2026-2681

Malicious code in @athena-ui-components/dashboard-widget (npm)

Malware
Apr 2026

@athena-ui-components/deeplink

npm

MAL-2026-2682

Malicious code in @athena-ui-components/deeplink (npm)

Malware
Apr 2026

@jesusvizcaino2021/com.baogong.app-push-permission

npm

MAL-2026-2916

Malicious code in @jesusvizcaino2021/com.baogong.app-push-permission (npm)

Malware
Apr 2026

js-logger-pack

npm

MAL-2026-2827

Malicious code in js-logger-pack (npm)

Malware
Apr 2026

@veygo/component-library

npm

MAL-2026-2680

Malicious code in @veygo/component-library (npm)

Malware
Apr 2026

pdf-linker

npm

MAL-2026-2677

Malicious code in pdf-linker (npm)

Malware
Apr 2026

snitz-chief-cloud

npm

MAL-2026-2678

Malicious code in snitz-chief-cloud (npm)

Malware
Apr 2026

chief-proxy-out

npm

MAL-2026-2674

Malicious code in chief-proxy-out (npm)

Malware
Apr 2026

snitz-chief-cloud-config

npm

MAL-2026-2679

Malicious code in snitz-chief-cloud-config (npm)

Malware
Apr 2026

chief-documentation

npm

MAL-2026-2673

Malicious code in chief-documentation (npm)

Malware
Apr 2026

moscova-plural-json-parser

npm

MAL-2026-2676

Malicious code in moscova-plural-json-parser (npm)

Malware
Apr 2026

mongoose-stamps

npm

MAL-2026-2675

Malicious code in mongoose-stamps (npm)

Malware
Apr 2026

ahmed_salem_ph

npm

MAL-2026-2672

Malicious code in ahmed_salem_ph (npm)

Malware
Apr 2026

github.com/zarf-dev/zarf

Go

GHSA-pj97-4p9w-gx3q

Zarf has a Path Traversal via Malicious Package Metadata.Name — Arbitrary File Write

Malware
1 CVE
Apr 2026

kryptex-os

PyPI

MAL-2026-2671

Malicious code in kryptex-os (PyPI)

Typosquat
Apr 2026

7miners

PyPI

MAL-2026-2670

Malicious code in 7miners (PyPI)

Typosquat
Apr 2026

ant-mcp-proxy-for-test

PyPI

MAL-2026-2669

Malicious code in ant-mcp-proxy-for-test (PyPI)

Malware
Apr 2026

pnpm-workspaces

npm

MAL-2026-2668

Malicious code in pnpm-workspaces (npm)

Malware
Apr 2026

ckeditor5-minimap

npm

MAL-2026-2667

Malicious code in ckeditor5-minimap (npm)

Malware
Apr 2026

moooo

PyPI

MAL-2026-2666

Malicious code in moooo (PyPI)

Malware
Apr 2026

buildenv-telemetry

PyPI

MAL-2026-2664

Malicious code in buildenv-telemetry (PyPI)

Malware
Apr 2026
Showing 265 - 288 of 225,040
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001