Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,576
Total Incidents

@xvortexsockets/baileys

npm

MAL-2026-2153

Malicious code in @xvortexsockets/baileys (npm)

Malware
Mar 2026

mattermost-data-warehouse

PyPI

MAL-2026-2148

Malicious code in mattermost-data-warehouse (PyPI)

Malware
Mar 2026

snooty

PyPI

MAL-2026-2150

Malicious code in snooty (PyPI)

Malware
Mar 2026

sentry-filter-forks

PyPI

MAL-2026-2149

Malicious code in sentry-filter-forks (PyPI)

Malware
Mar 2026

mattermost-airflow

PyPI

MAL-2026-2147

Malicious code in mattermost-airflow (PyPI)

Malware
Mar 2026

databricks-clean-room-orchestrator

PyPI

MAL-2026-2146

Malicious code in databricks-clean-room-orchestrator (PyPI)

Malware
Mar 2026

compose-rl

PyPI

MAL-2026-2145

Malicious code in compose-rl (PyPI)

Malware
Mar 2026

target-iceberg

PyPI

MAL-2026-2152

Malicious code in target-iceberg (PyPI)

Malware
Mar 2026

tap-wordpress

PyPI

MAL-2026-2151

Malicious code in tap-wordpress (PyPI)

Malware
Mar 2026

roboat-util

PyPI

MAL-2026-2142

Malicious code in roboat-util (PyPI)

Malware
Mar 2026

roboated

PyPI

MAL-2026-2143

Malicious code in roboated (PyPI)

Malware
Mar 2026

corexloader

PyPI

MAL-2026-2141

Malicious code in corexloader (PyPI)

Malware
Mar 2026

coreloader

PyPI

MAL-2026-2140

Malicious code in coreloader (PyPI)

Malware
Mar 2026

stats-helpers

PyPI

MAL-2026-2139

Malicious code in stats-helpers (PyPI)

Malware
Mar 2026

open-vp-cal

PyPI

MAL-2026-2138

Malicious code in open-vp-cal (PyPI)

Malware
Mar 2026

aquasecurity/setup-trivy

GitHub Actions

GHSA-69fq-xp46-6x23

Trivy ecosystem supply chain was briefly compromised

Typosquat
1 CVE
Mar 2026

xrpl-hooks-ide

npm

MAL-2026-2398

Malicious code in xrpl-hooks-ide (npm)

Malware
Mar 2026

wraith-module

npm

MAL-2026-2397

Malicious code in wraith-module (npm)

Malware
Mar 2026

voodoo-internal-api

npm

MAL-2026-2396

Malicious code in voodoo-internal-api (npm)

Malware
Mar 2026

uuidvalidatorarabis

npm

MAL-2026-2395

Malicious code in uuidvalidatorarabis (npm)

Malware
Mar 2026

typescript-mock-data

npm

MAL-2026-2394

Malicious code in typescript-mock-data (npm)

Malware
Mar 2026

this-is-my-test-package

npm

MAL-2026-2393

Malicious code in this-is-my-test-package (npm)

Malware
Mar 2026

stormbreaker-shade

npm

MAL-2026-2392

Malicious code in stormbreaker-shade (npm)

Malware
Mar 2026

ssr-catalogue-sfcc

npm

MAL-2026-2391

Malicious code in ssr-catalogue-sfcc (npm)

Malware
Mar 2026
Showing 4273 - 4296 of 228,576
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001