Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

225,384
Total Incidents

ent-profile-unauth-msr-stop

npm

MAL-2026-14

Malicious code in ent-profile-unauth-msr-stop (npm)

Malware
Jan 2026

eslint-config-skynet

npm

MAL-2026-15

Malicious code in eslint-config-skynet (npm)

Malware
Jan 2026

usaa-authentication-mocks

npm

MAL-2026-25

Malicious code in usaa-authentication-mocks (npm)

Malware
Jan 2026

identity-emitter

npm

MAL-2026-17

Malicious code in identity-emitter (npm)

Malware
Jan 2026

orchestration-node-common-errors

npm

MAL-2026-21

Malicious code in orchestration-node-common-errors (npm)

Malware
Jan 2026

fix-cc-raiesy

npm

MAL-2026-16

Malicious code in fix-cc-raiesy (npm)

Malware
Jan 2026

jest-config-ibm-cloud-cognitive

npm

MAL-2026-19

Malicious code in jest-config-ibm-cloud-cognitive (npm)

Malware
Jan 2026

pkg1bate5apg1

npm

MAL-2026-22

Malicious code in pkg1bate5apg1 (npm)

Malware
Jan 2026

babel-preset-ibm-cloud-cognitive

npm

MAL-2026-10

Malicious code in babel-preset-ibm-cloud-cognitive (npm)

Malware
Jan 2026

showdownxss

npm

MAL-2026-23

Malicious code in showdownxss (npm)

Malware
Jan 2026

cc-double-1

npm

MAL-2026-11

Malicious code in cc-double-1 (npm)

Malware
Jan 2026

511fola

npm

MAL-2026-9

Malicious code in 511fola (npm)

Malware
Jan 2026

ent-file-upload-widget-v2

npm

MAL-2026-13

Malicious code in ent-file-upload-widget-v2 (npm)

Malware
Jan 2026

@nitaiapiiro/rand_emoji

npm

MAL-2026-8

Malicious code in @nitaiapiiro/rand_emoji (npm)

Malware
Jan 2026

pdatainstaller

PyPI

MAL-2026-26

Malicious code in pdatainstaller (PyPI)

Malware
Jan 2026

gatr

PyPI

MAL-2026-7

Malicious code in gatr (PyPI)

Malware
Jan 2026

ziphash

PyPI

MAL-2026-6

Malicious code in ziphash (PyPI)

Malware
Jan 2026

queryservice-client

PyPI

MAL-2026-5

Malicious code in queryservice-client (PyPI)

Typosquat
Jan 2026

rules-playground

npm

MAL-2026-4

Malicious code in rules-playground (npm)

Malware
Jan 2026

rules-deployer

npm

MAL-2026-3

Malicious code in rules-deployer (npm)

Malware
Jan 2026

common-cli-utils

npm

MAL-2026-2

Malicious code in common-cli-utils (npm)

Malware
Jan 2026

sfnt2woff-zopfli

PyPI

MAL-2026-1

Malicious code in sfnt2woff-zopfli (PyPI)

Malware
Jan 2026

requeses

PyPI

MAL-2025-193011

Malicious code in requeses (PyPI)

Typosquat
Dec 2025

@polystream/streaming

npm

MAL-2025-193009

Malicious code in @polystream/streaming (npm)

Malware
Dec 2025
Showing 3385 - 3408 of 225,384
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001