Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

225,303
Total Incidents

code-transfering-4

PyPI

MAL-2026-446

Malicious code in code-transfering-4 (PyPI)

Malware
Jan 2026

terminalbrush

PyPI

MAL-2026-444

Malicious code in terminalbrush (PyPI)

Malware
Jan 2026

1q847

PyPI

MAL-2026-443

Malicious code in 1q847 (PyPI)

Malware
Jan 2026

xadauiom

PyPI

MAL-2026-442

Malicious code in xadauiom (PyPI)

Malware
Jan 2026

anduril-lattice-sdk-grpc-python

PyPI

MAL-2026-440

Malicious code in anduril-lattice-sdk-grpc-python (PyPI)

Malware
Jan 2026

spellcheckpy

PyPI

MAL-2026-441

Malicious code in spellcheckpy (PyPI)

Malware
Jan 2026

tv-admin-commons

npm

MAL-2026-439

Malicious code in tv-admin-commons (npm)

Malware
Jan 2026

ts-tweetnacl-utils

npm

MAL-2026-438

Malicious code in ts-tweetnacl-utils (npm)

Malware
Jan 2026

lumo-api-client

npm

MAL-2026-437

Malicious code in lumo-api-client (npm)

Malware
Jan 2026

jquery-ajaxchimp

npm

MAL-2026-436

Malicious code in jquery-ajaxchimp (npm)

Malware
Jan 2026

aligntype

npm

MAL-2026-435

Malicious code in aligntype (npm)

Malware
Jan 2026

chai-async-test

npm

MAL-2026-409

Malicious code in chai-async-test (npm)

Malware
Jan 2026

dotenv-expanded

npm

MAL-2026-415

Malicious code in dotenv-expanded (npm)

Malware
Jan 2026

qdrant-js

npm

MAL-2026-426

Malicious code in qdrant-js (npm)

Malware
Jan 2026

weaviate-js

npm

MAL-2026-434

Malicious code in weaviate-js (npm)

Malware
Jan 2026

replicate-js

npm

MAL-2026-427

Malicious code in replicate-js (npm)

Malware
Jan 2026

nanoid-js

npm

MAL-2026-418

Malicious code in nanoid-js (npm)

Malware
Jan 2026

plugin-vue

npm

MAL-2026-425

Malicious code in plugin-vue (npm)

Malware
Jan 2026

storage-types

npm

MAL-2026-430

Malicious code in storage-types (npm)

Malware
Jan 2026

plugin-react-swc

npm

MAL-2026-424

Malicious code in plugin-react-swc (npm)

Malware
Jan 2026

babel-js

npm

MAL-2026-407

Malicious code in babel-js (npm)

Malware
Jan 2026

aws-crt-nodejs

npm

MAL-2026-406

Malicious code in aws-crt-nodejs (npm)

Malware
Jan 2026

debox-rn

npm

MAL-2026-414

Malicious code in debox-rn (npm)

Malware
Jan 2026

testpkg-yilider690

npm

MAL-2026-431

Malicious code in testpkg-yilider690 (npm)

Malware
Jan 2026
Showing 2881 - 2904 of 225,303
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001