Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,624
Total Incidents

dazaar-payment

npm

MAL-0000-phantomraven-dazaar-payment

Malicious npm package: dazaar-payment (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

transform-remove-debugger

npm

MAL-0000-phantomraven-transform-remove-debugger

Malicious npm package: transform-remove-debugger (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

developit

npm

MAL-0000-phantomraven-developit

Malicious npm package: developit (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

todo-plz

npm

MAL-0000-phantomraven-todo-plz

Malicious npm package: todo-plz (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

minify-mangle-names

npm

MAL-0000-phantomraven-minify-mangle-names

Malicious npm package: minify-mangle-names (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

dazaar-cli

npm

MAL-0000-phantomraven-dazaar-cli

Malicious npm package: dazaar-cli (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

typescript-validation-schema

npm

MAL-0000-phantomraven-typescript-validation-schema

Malicious npm package: typescript-validation-schema (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

lit-a11y

npm

MAL-0000-phantomraven-lit-a11y

Malicious npm package: lit-a11y (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

typescript-type-graphql

npm

MAL-0000-phantomraven-typescript-type-graphql

Malicious npm package: typescript-type-graphql (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

syntax-export-extensions

npm

MAL-0000-phantomraven-syntax-export-extensions

Malicious npm package: syntax-export-extensions (PhantomRaven campaign, Wave 3)

Malware
Mar 2026

sort-export-all

npm

MAL-0000-phantomraven-sort-export-all

Malicious npm package: sort-export-all (PhantomRaven campaign, Wave 4)

Malware
Mar 2026

jam3

npm

MAL-0000-phantomraven-jam3

Malicious npm package: jam3 (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

declaration-block-no-ignored-properties

npm

MAL-0000-phantomraven-declaration-block-no-ignored-properties

Malicious npm package: declaration-block-no-ignored-properties (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

monorepo-cop

npm

MAL-0000-phantomraven-monorepo-cop

Malicious npm package: monorepo-cop (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

relay-optimizer-plugin

npm

MAL-0000-phantomraven-relay-optimizer-plugin

Malicious npm package: relay-optimizer-plugin (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

transform-function-bind

npm

MAL-0000-phantomraven-transform-function-bind

Malicious npm package: transform-function-bind (PhantomRaven campaign, Wave 3)

Malware
Mar 2026

proposal-typescript

npm

MAL-0000-phantomraven-proposal-typescript

Malicious npm package: proposal-typescript (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

prefer-let

npm

MAL-0000-phantomraven-prefer-let

Malicious npm package: prefer-let (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

require-in-package

npm

MAL-0000-phantomraven-require-in-package

Malicious npm package: require-in-package (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

transform-new-target

npm

MAL-0000-phantomraven-transform-new-target

Malicious npm package: transform-new-target (PhantomRaven campaign, Wave 3)

Malware
Mar 2026

typescript-nhost

npm

MAL-0000-phantomraven-typescript-nhost

Malicious npm package: typescript-nhost (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

minify-replace

npm

MAL-0000-phantomraven-minify-replace

Malicious npm package: minify-replace (PhantomRaven campaign, Wave 2)

Malware
Mar 2026

google-camelcase

npm

MAL-0000-phantomraven-google-camelcase

Malicious npm package: google-camelcase (PhantomRaven campaign, Wave 3)

Malware
Mar 2026

transform-json-strings

npm

MAL-0000-phantomraven-transform-json-strings

Malicious npm package: transform-json-strings (PhantomRaven campaign, Wave 3)

Malware
Mar 2026
Showing 5161 - 5184 of 228,624
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001