Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,609
Total Incidents

frank-newton3-db-final

npm

MAL-2026-3169

Malicious code in frank-newton3-db-final (npm)

Malware
Apr 2026

gcp-internal-research-poc

npm

MAL-2026-3173

Malicious code in gcp-internal-research-poc (npm)

Malware
Apr 2026

apple-infra-escape-audit

npm

MAL-2026-3166

Malicious code in apple-infra-escape-audit (npm)

Malware
Apr 2026

frank-newton3-user-hunt

npm

MAL-2026-3172

Malicious code in frank-newton3-user-hunt (npm)

Malware
Apr 2026

apple-infra-stealth-audit

npm

MAL-2026-3167

Malicious code in apple-infra-stealth-audit (npm)

Malware
Apr 2026

frank-newton3-final-audit

npm

MAL-2026-3171

Malicious code in frank-newton3-final-audit (npm)

Malware
Apr 2026

@corp-infra/sso-gateway-core

npm

MAL-2026-3254

Malicious code in @corp-infra/sso-gateway-core (npm)

Typosquat
Apr 2026

internal-auth-provider

npm

MAL-2026-3261

Malicious code in internal-auth-provider (npm)

Typosquat
Apr 2026

@enterprise-core/auth-gateway-bridge

npm

MAL-2026-3255

Malicious code in @enterprise-core/auth-gateway-bridge (npm)

Typosquat
Apr 2026

@internal-infra/core-sso-bridge

npm

MAL-2026-3256

Malicious code in @internal-infra/core-sso-bridge (npm)

Typosquat
Apr 2026

@omni-corp-infra/sso-bridge-core

npm

MAL-2026-3257

Malicious code in @omni-corp-infra/sso-bridge-core (npm)

Typosquat
Apr 2026

enterprise-auth-gateway-core

npm

MAL-2026-3259

Malicious code in enterprise-auth-gateway-core (npm)

Typosquat
Apr 2026

google-storage-cloud

npm

MAL-2026-3260

Malicious code in google-storage-cloud (npm)

Typosquat
Apr 2026

react-native-parallax-scroll-view-updated

npm

MAL-2026-3262

Malicious code in react-native-parallax-scroll-view-updated (npm)

Typosquat
Apr 2026

@tech-global/internal-gateway-core

npm

MAL-2026-3258

Malicious code in @tech-global/internal-gateway-core (npm)

Typosquat
Apr 2026

chai-as-char

npm

MAL-2026-3164

Malicious code in chai-as-char (npm)

Malware
Apr 2026

chai-as-redeployed

npm

MAL-2026-3165

Malicious code in chai-as-redeployed (npm)

Malware
Apr 2026

period-newline

npm

MAL-2026-3181

Malicious code in period-newline (npm)

Malware
Apr 2026

nicegui

npm

MAL-2026-3180

Malicious code in nicegui (npm)

Typosquat
Apr 2026

redeem-onchain-sdk

npm

MAL-2026-3182

Malicious code in redeem-onchain-sdk (npm)

Malware
Apr 2026

@cap-js/sqlite

npm

MAL-2026-3178

Malicious code in @cap-js/sqlite (npm)

Malware
Apr 2026

@cap-js/db-service

npm

MAL-2026-3176

Malicious code in @cap-js/db-service (npm)

Malware
Apr 2026

mbt

npm

MAL-2026-3179

Malicious code in mbt (npm)

Malware
Apr 2026

@cap-js/postgres

npm

MAL-2026-3177

Malicious code in @cap-js/postgres (npm)

Malware
Apr 2026
Showing 3361 - 3384 of 228,609
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001