Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,568
Total Incidents

@kucoin-gbiz-next/tools

npm

MAL-2026-2587

Malicious code in @kucoin-gbiz-next/tools (npm)

Malware
Apr 2026

@pes-ui/components

npm

MAL-2026-2591

Malicious code in @pes-ui/components (npm)

Malware
Apr 2026

@zgny/onboarding-consumer

npm

MAL-2026-2597

Malicious code in @zgny/onboarding-consumer (npm)

Malware
Apr 2026

@spreadjs/js-calc

npm

MAL-2026-2596

Malicious code in @spreadjs/js-calc (npm)

Malware
Apr 2026

@ids-alpha/theme

npm

MAL-2026-2586

Malicious code in @ids-alpha/theme (npm)

Malware
Apr 2026

@mx-shared/utils

npm

MAL-2026-2589

Malicious code in @mx-shared/utils (npm)

Malware
Apr 2026

@op-microfrontends/config

npm

MAL-2026-2590

Malicious code in @op-microfrontends/config (npm)

Malware
Apr 2026

@hrb-web/nuxt

npm

MAL-2026-2585

Malicious code in @hrb-web/nuxt (npm)

Malware
Apr 2026

@sage-active/ui

npm

MAL-2026-2593

Malicious code in @sage-active/ui (npm)

Malware
Apr 2026

@dtc-campaign-wizard/campaign-wizard

npm

MAL-2026-2581

Malicious code in @dtc-campaign-wizard/campaign-wizard (npm)

Malware
Apr 2026

@amplify-js/datastore

npm

MAL-2026-2574

Malicious code in @amplify-js/datastore (npm)

Malware
Apr 2026

@cash-web/no-hardcoded-font-styles

npm

MAL-2026-2580

Malicious code in @cash-web/no-hardcoded-font-styles (npm)

Malware
Apr 2026

@bokehjs/core

npm

MAL-2026-2578

Malicious code in @bokehjs/core (npm)

Malware
Apr 2026

@aircall-ecosystem/integrations-msteams-frontend

npm

MAL-2026-2573

Malicious code in @aircall-ecosystem/integrations-msteams-frontend (npm)

Malware
Apr 2026

@ascend-ops/web-client

npm

MAL-2026-2575

Malicious code in @ascend-ops/web-client (npm)

Malware
Apr 2026

@guards-lib/auth

npm

MAL-2026-2582

Malicious code in @guards-lib/auth (npm)

Malware
Apr 2026

@hmm-app/api

npm

MAL-2026-2583

Malicious code in @hmm-app/api (npm)

Malware
Apr 2026

@hpcc/js-api

npm

MAL-2026-2584

Malicious code in @hpcc/js-api (npm)

Malware
Apr 2026

@bookiply/core

npm

MAL-2026-2579

Malicious code in @bookiply/core (npm)

Malware
Apr 2026

wm-plugin-wm-smart-tip-dont-embed-tooltip

npm

MAL-2026-2622

Malicious code in wm-plugin-wm-smart-tip-dont-embed-tooltip (npm)

Malware
Apr 2026

stats-api-js-client

npm

MAL-2026-2607

Malicious code in stats-api-js-client (npm)

Malware
Apr 2026

ih-icon

npm

MAL-2026-2604

Malicious code in ih-icon (npm)

Malware
Apr 2026

babel-plugin-fbtee

npm

MAL-2026-2598

Malicious code in babel-plugin-fbtee (npm)

Malware
Apr 2026

cms-site-api-js-client

npm

MAL-2026-2600

Malicious code in cms-site-api-js-client (npm)

Malware
Apr 2026
Showing 3865 - 3888 of 228,568
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001