Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

225,106
Total Incidents

@emilgroup/accounting-sdk

npm

MAL-2026-2033

Malicious code in @emilgroup/accounting-sdk (npm)

Backdoor
Mar 2026

@emilgroup/account-sdk

npm

MAL-2026-2031

Malicious code in @emilgroup/account-sdk (npm)

Backdoor
Mar 2026

babel-plugin-react-pure-component

npm

MAL-2026-2067

Malicious code in babel-plugin-react-pure-component (npm)

Backdoor
Mar 2026

@pypestream/floating-ui-dom

npm

MAL-2026-2030

Malicious code in @pypestream/floating-ui-dom (npm)

Backdoor
Mar 2026

pipinpeace-bind

PyPI

MAL-2026-2028

Malicious code in pipinpeace-bind (PyPI)

Typosquat
Mar 2026

pipinpeace-reverse

PyPI

MAL-2026-2029

Malicious code in pipinpeace-reverse (PyPI)

Typosquat
Mar 2026

opengov-k6-core

npm

MAL-2026-2027

Malicious code in opengov-k6-core (npm)

Backdoor
Mar 2026

pipinpeace-env

PyPI

MAL-2026-2026

Malicious code in pipinpeace-env (PyPI)

Typosquat
Mar 2026

remitly-blog

npm

MAL-2026-2025

Malicious code in remitly-blog (npm)

Malware
Mar 2026

@mesh-helpers/themehelper

npm

MAL-2026-2024

Malicious code in @mesh-helpers/themehelper (npm)

Malware
Mar 2026

@mesh-components/card

npm

MAL-2026-2022

Malicious code in @mesh-components/card (npm)

Malware
Mar 2026

@mesh-components/customthemeprovider

npm

MAL-2026-2023

Malicious code in @mesh-components/customthemeprovider (npm)

Malware
Mar 2026

@mesh-helpers/common

npm

MAL-2026-2021

Malicious code in @mesh-helpers/common (npm)

Malware
Mar 2026

@modals/blockchain

npm

MAL-2026-2018

Malicious code in @modals/blockchain (npm)

Malware
Mar 2026

@modals/layout

npm

MAL-2026-2019

Malicious code in @modals/layout (npm)

Malware
Mar 2026

aiolrucache

PyPI

MAL-2026-2020

Malicious code in aiolrucache (PyPI)

Malware
Mar 2026

thisismytest

PyPI

MAL-2026-2017

Malicious code in thisismytest (PyPI)

Backdoor
Mar 2026

qyrm-pipinject4

PyPI

MAL-2026-2016

Malicious code in qyrm-pipinject4 (PyPI)

Malware
Mar 2026

lingewindows

npm

MAL-2026-2015

Malicious code in lingewindows (npm)

Malware
Mar 2026

address-autocompletetest

npm

MAL-2026-2014

Malicious code in address-autocompletetest (npm)

Malware
Mar 2026

nump

PyPI

MAL-2026-2013

Malicious code in nump (PyPI)

Typosquat
Mar 2026

characterai-poc

npm

MAL-2026-2012

Malicious code in characterai-poc (npm)

Malware
Mar 2026

cms-catalogue

npm

MAL-2026-2011

Malicious code in cms-catalogue (npm)

Malware
Mar 2026

yelp-react-component-badge

npm

MAL-2026-2010

Malicious code in yelp-react-component-badge (npm)

Malware
Mar 2026
Showing 1009 - 1032 of 225,106
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001