Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,448
Total Incidents

@mastra/client-js

npm

MAL-2026-6007

Malicious code in @mastra/client-js (npm)

Malware
Jun 2026

@mastra/server

npm

MAL-2026-6036

Malicious code in @mastra/server (npm)

Malware
Jun 2026

@mastra/core

npm

MAL-2026-6011

Malicious code in @mastra/core (npm)

Malware
Jun 2026

create-mastra

npm

MAL-2026-6050

Malicious code in create-mastra (npm)

Malware
Jun 2026

@mastra/deployer

npm

MAL-2026-6015

Malicious code in @mastra/deployer (npm)

Malware
Jun 2026

metrics-probe-64b2

npm

MAL-2026-5981

Malicious code in metrics-probe-64b2 (npm)

Malware
Jun 2026

metrics-probe-77d4

npm

MAL-2026-5982

Malicious code in metrics-probe-77d4 (npm)

Malware
Jun 2026

metrics-probe-dc85

npm

MAL-2026-5983

Malicious code in metrics-probe-dc85 (npm)

Malware
Jun 2026

pkg-telemetry-r4f9

npm

MAL-2026-5990

Malicious code in pkg-telemetry-r4f9 (npm)

Malware
Jun 2026

runtime-metrics-w7k2

npm

MAL-2026-5992

Malicious code in runtime-metrics-w7k2 (npm)

Malware
Jun 2026

npm-sandbox-ping-r9t2

npm

MAL-2026-5986

Malicious code in npm-sandbox-ping-r9t2 (npm)

Malware
Jun 2026

gpu-accelerator

npm

MAL-2026-5980

Malicious code in gpu-accelerator (npm)

Malware
Jun 2026

canary-ci-test

npm

MAL-2026-5972

Malicious code in canary-ci-test (npm)

Malware
Jun 2026

nepublisher

npm

MAL-2026-5984

Malicious code in nepublisher (npm)

Malware
Jun 2026

ts-webplug

npm

MAL-2026-5994

Malicious code in ts-webplug (npm)

Malware
Jun 2026

params-valid-js

npm

MAL-2026-5988

Malicious code in params-valid-js (npm)

Malware
Jun 2026

tobihook

PyPI

MAL-2026-5995

Malicious code in tobihook (PyPI)

Malware
Jun 2026

node-path-utils

npm

MAL-2026-5985

Malicious code in node-path-utils (npm)

Malware
Jun 2026

req-parmas-valid

npm

MAL-2026-5991

Malicious code in req-parmas-valid (npm)

Malware
Jun 2026

sheratan_test_p

npm

MAL-2026-5993

Malicious code in sheratan_test_p (npm)

Malware
Jun 2026

pathfix

npm

MAL-2026-5989

Malicious code in pathfix (npm)

Malware
Jun 2026

ogd-analytics

npm

MAL-2026-5987

Malicious code in ogd-analytics (npm)

Dep Confusion
Jun 2026

classbreeze-utils

npm

MAL-2026-5973

Malicious code in classbreeze-utils (npm)

Malware
Jun 2026

easy-day-js

npm

MAL-2026-5979

Malicious code in easy-day-js (npm)

Malware
Jun 2026
Showing 385 - 408 of 228,448
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001