Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

225,062
Total Incidents

@sage-active/ui

npm

MAL-2026-2593

Malicious code in @sage-active/ui (npm)

Malware
Apr 2026

@sports-api/api-sdk

npm

MAL-2026-2595

Malicious code in @sports-api/api-sdk (npm)

Malware
Apr 2026

@zgny/onboarding-consumer

npm

MAL-2026-2597

Malicious code in @zgny/onboarding-consumer (npm)

Malware
Apr 2026

@kucoin-gbiz-next/tools

npm

MAL-2026-2587

Malicious code in @kucoin-gbiz-next/tools (npm)

Malware
Apr 2026

@dtc-campaign-wizard/campaign-wizard

npm

MAL-2026-2581

Malicious code in @dtc-campaign-wizard/campaign-wizard (npm)

Malware
Apr 2026

@op-microfrontends/config

npm

MAL-2026-2590

Malicious code in @op-microfrontends/config (npm)

Malware
Apr 2026

@spoonflower/ui

npm

MAL-2026-2594

Malicious code in @spoonflower/ui (npm)

Malware
Apr 2026

@hrb-web/nuxt

npm

MAL-2026-2585

Malicious code in @hrb-web/nuxt (npm)

Malware
Apr 2026

@relxui/react

npm

MAL-2026-2592

Malicious code in @relxui/react (npm)

Malware
Apr 2026

@pes-ui/components

npm

MAL-2026-2591

Malicious code in @pes-ui/components (npm)

Malware
Apr 2026

wm-plugin-wm-smart-tip-dont-embed-tooltip

npm

MAL-2026-2622

Malicious code in wm-plugin-wm-smart-tip-dont-embed-tooltip (npm)

Malware
Apr 2026

@aircall-ecosystem/integrations-msteams-frontend

npm

MAL-2026-2573

Malicious code in @aircall-ecosystem/integrations-msteams-frontend (npm)

Malware
Apr 2026

@hpcc/js-api

npm

MAL-2026-2584

Malicious code in @hpcc/js-api (npm)

Malware
Apr 2026

@guards-lib/auth

npm

MAL-2026-2582

Malicious code in @guards-lib/auth (npm)

Malware
Apr 2026

@cash-web/no-hardcoded-font-styles

npm

MAL-2026-2580

Malicious code in @cash-web/no-hardcoded-font-styles (npm)

Malware
Apr 2026

@hmm-app/api

npm

MAL-2026-2583

Malicious code in @hmm-app/api (npm)

Malware
Apr 2026

@ascend-ops/web-client

npm

MAL-2026-2575

Malicious code in @ascend-ops/web-client (npm)

Malware
Apr 2026

@bokehjs/core

npm

MAL-2026-2578

Malicious code in @bokehjs/core (npm)

Malware
Apr 2026

@amplify-js/datastore

npm

MAL-2026-2574

Malicious code in @amplify-js/datastore (npm)

Malware
Apr 2026

@bookiply/core

npm

MAL-2026-2579

Malicious code in @bookiply/core (npm)

Malware
Apr 2026

twilio-video.js

npm

MAL-2026-2610

Malicious code in twilio-video.js (npm)

Malware
Apr 2026

etsy-advocacy

npm

MAL-2026-2602

Malicious code in etsy-advocacy (npm)

Malware
Apr 2026

babel-plugin-fbtee

npm

MAL-2026-2598

Malicious code in babel-plugin-fbtee (npm)

Malware
Apr 2026

trade-in-lib

npm

MAL-2026-2609

Malicious code in trade-in-lib (npm)

Malware
Apr 2026
Showing 361 - 384 of 225,062
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001