Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

225,209
Total Incidents

@atg-aml-shared/kyc-domain

npm

MAL-2026-1021

Malicious code in @atg-aml-shared/kyc-domain (npm)

Malware
Feb 2026

spark-audit-notify

PyPI

MAL-2026-1019

Malicious code in spark-audit-notify (PyPI)

Malware
Feb 2026

do-not-install-this-package-003

PyPI

MAL-2026-1018

Malicious code in do-not-install-this-package-003 (PyPI)

Malware
Feb 2026

js-multer

npm

MAL-2026-1016

Malicious code in js-multer (npm)

Malware
Feb 2026

chai-iotype

npm

MAL-2026-1014

Malicious code in chai-iotype (npm)

Malware
Feb 2026

chai-as-pause

npm

MAL-2026-1013

Malicious code in chai-as-pause (npm)

Malware
Feb 2026

json-mapping-srcs

npm

MAL-2026-1017

Malicious code in json-mapping-srcs (npm)

Malware
Feb 2026

es1int-config

npm

MAL-2026-1015

Malicious code in es1int-config (npm)

Malware
Feb 2026

chai-tools

npm

MAL-2026-1006

Malicious code in chai-tools (npm)

Malware
Feb 2026

argon-web3-chain

npm

MAL-2026-1005

Malicious code in argon-web3-chain (npm)

Malware
Feb 2026

node-argon

npm

MAL-2026-1011

Malicious code in node-argon (npm)

Malware
Feb 2026

dotenvx-ext

npm

MAL-2026-1007

Malicious code in dotenvx-ext (npm)

Malware
Feb 2026

modify-setting

npm

MAL-2026-1010

Malicious code in modify-setting (npm)

Malware
Feb 2026

es1int-re1ease

npm

MAL-2026-1008

Malicious code in es1int-re1ease (npm)

Malware
Feb 2026

ultimates-express

npm

MAL-2026-1012

Malicious code in ultimates-express (npm)

Malware
Feb 2026

express-soaps

npm

MAL-2026-1009

Malicious code in express-soaps (npm)

Malware
Feb 2026

request-httpx-9

PyPI

MAL-2026-1004

Malicious code in request-httpx-9 (PyPI)

Dep Confusion
Feb 2026

react-markdown-canvas

npm

MAL-2026-1040

Malicious code in react-markdown-canvas (npm)

Malware
Feb 2026

newrubylogger

RubyGems

MAL-2026-1002

Malicious code in newrubylogger (RubyGems)

Malware
Feb 2026

cnnct-eaas-corre

PyPI

MAL-2026-1003

Malicious code in cnnct-eaas-corre (PyPI)

Malware
Feb 2026

request-httpx-4

PyPI

MAL-2026-1001

Malicious code in request-httpx-4 (PyPI)

Dep Confusion
Feb 2026

secure-monkey

npm

MAL-2026-1041

Malicious code in secure-monkey (npm)

Malware
Feb 2026

scraper-npm

PyPI

MAL-2026-1000

Malicious code in scraper-npm (PyPI)

Backdoor
Feb 2026

react-dropzone-truffle

npm

MAL-2026-999

Malicious code in react-dropzone-truffle (npm)

Malware
Feb 2026
Showing 2209 - 2232 of 225,209
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001