Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,576
Total Incidents

@alfa.life.mapp/app.web

npm

MAL-2026-3052

Malicious code in @alfa.life.mapp/app.web (npm)

Malware
Apr 2026

swampo

PyPI

MAL-2026-3031

Malicious code in swampo (PyPI)

Malware
Apr 2026

@m0ntana/app.web

npm

MAL-2026-3065

Malicious code in @m0ntana/app.web (npm)

Malware
Apr 2026

model-poc-suhail

npm

MAL-2026-3030

Malicious code in model-poc-suhail (npm)

Malware
Apr 2026

amplitude-ma-ts

npm

MAL-2026-3028

Malicious code in amplitude-ma-ts (npm)

Typosquat
Apr 2026

auth0-ui-components-docs

npm

MAL-2026-3024

Malicious code in auth0-ui-components-docs (npm)

Malware
Apr 2026

next-rwa

npm

MAL-2026-3025

Malicious code in next-rwa (npm)

Malware
Apr 2026

wrapped-logger-utils

npm

MAL-2026-3027

Malicious code in wrapped-logger-utils (npm)

Malware
Apr 2026

sagat-core

npm

MAL-2026-3026

Malicious code in sagat-core (npm)

Malware
Apr 2026

test-pkg-jie

PyPI

MAL-2026-3023

Malicious code in test-pkg-jie (PyPI)

Malware
Apr 2026

lightspark-js

npm

MAL-2026-3021

Malicious code in lightspark-js (npm)

Malware
Apr 2026

jie-utility-package

PyPI

MAL-2026-3022

Malicious code in jie-utility-package (PyPI)

Malware
Apr 2026

@bitwarden/cli

npm

MAL-2026-3020

Malicious code in @bitwarden/cli (npm)

Malware
Apr 2026

microsoft-employee-experience

npm

MAL-2026-3018

Malicious code in microsoft-employee-experience (npm)

Malware
Apr 2026

hls.js

npm

MAL-2026-3019

Malicious code in hls.js (npm)

Malware
Apr 2026

react-spa-npm

npm

MAL-2026-3017

Malicious code in react-spa-npm (npm)

Malware
Apr 2026

amazon-q-developer-streaming-client

npm

MAL-2026-3016

Malicious code in amazon-q-developer-streaming-client (npm)

Malware
Apr 2026

lyroxcoder

PyPI

MAL-2026-3015

Malicious code in lyroxcoder (PyPI)

Malware
Apr 2026

eth-logger

npm

MAL-2026-3029

Malicious code in eth-logger (npm)

Malware
Apr 2026

json-dec

npm

MAL-2026-3007

Malicious code in json-dec (npm)

Malware
Apr 2026

json-spacer

npm

MAL-2026-3008

Malicious code in json-spacer (npm)

Malware
Apr 2026

@nklkas/hyperliquid

npm

MAL-2026-3004

Malicious code in @nklkas/hyperliquid (npm)

Malware
Apr 2026

changelog-utils-structured-logger

npm

MAL-2026-3006

Malicious code in changelog-utils-structured-logger (npm)

Malware
Apr 2026

changelog-cli-logger

npm

MAL-2026-3005

Malicious code in changelog-cli-logger (npm)

Malware
Apr 2026
Showing 3481 - 3504 of 228,576
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001