Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,638
Total Incidents

private-next-pages

npm

MAL-2026-4193

Malicious code in private-next-pages (npm)

Malware
May 2026

@self-evolving-harness/kivo

npm

MAL-2026-4433

Malicious code in @self-evolving-harness/kivo (npm)

Malware
May 2026

txdpy

PyPI

MAL-2026-4772

Malicious code in txdpy (PyPI)

Malware
May 2026

strawberry-graphql

PyPI

MAL-2026-4771

Malicious code in strawberry-graphql (PyPI)

Malware
May 2026

vlifegram

PyPI

MAL-2026-4773

Malicious code in vlifegram (PyPI)

Backdoor
May 2026

libhmac

PyPI

MAL-2026-4194

Malicious code in libhmac (PyPI)

Malware
May 2026

@doctolib-apps/native-personalized-services

npm

MAL-2026-4186

Malicious code in @doctolib-apps/native-personalized-services (npm)

Malware
May 2026

@limebike/supreme-date-pickers

npm

MAL-2026-4190

Malicious code in @limebike/supreme-date-pickers (npm)

Malware
May 2026

@limebike/frontend-core-api

npm

MAL-2026-4187

Malicious code in @limebike/frontend-core-api (npm)

Malware
May 2026

@limebike/supreme-data-grid

npm

MAL-2026-4189

Malicious code in @limebike/supreme-data-grid (npm)

Malware
May 2026

iv-stubborn

npm

MAL-2026-4192

Malicious code in iv-stubborn (npm)

Malware
May 2026

iv-bloomfilter

npm

MAL-2026-4191

Malicious code in iv-bloomfilter (npm)

Malware
May 2026

@limebike/supreme

npm

MAL-2026-4188

Malicious code in @limebike/supreme (npm)

Malware
May 2026

uolcs-host-uol-anuncios-fe

npm

MAL-2026-4185

Malicious code in uolcs-host-uol-anuncios-fe (npm)

Malware
May 2026

@cap-js/db-service

npm

GHSA-pvw4-cvr4-97p8

Supply chain compromise via malicious package versions (@cap-js/sqlite, @cap-js/postgres, @cap-js/db-service)

Malware
1 CVE
May 2026

@nutui/nutui-react-taro

npm

MAL-2026-4409

Malicious code in @nutui/nutui-react-taro (npm)

Malware
May 2026

stripe-internal-utils

npm

MAL-2026-4184

Malicious code in stripe-internal-utils (npm)

Malware
May 2026

@budetzz/baileys

npm

MAL-2026-4372

Malicious code in @budetzz/baileys (npm)

Malware
May 2026

@bcrumbs.net/bc-chat

npm

MAL-2026-4367

Malicious code in @bcrumbs.net/bc-chat (npm)

Malware
May 2026

mamadoos-test

npm

MAL-2026-4605

Malicious code in mamadoos-test (npm)

Malware
May 2026

randomlogs

npm

MAL-2026-4657

Malicious code in randomlogs (npm)

Malware
May 2026

gator-client

npm

MAL-2026-4569

Malicious code in gator-client (npm)

Malware
May 2026

rendezvous-js

npm

MAL-2026-4662

Malicious code in rendezvous-js (npm)

Typosquat
May 2026

banana-stand

npm

MAL-2026-4495

Malicious code in banana-stand (npm)

Malware
May 2026
Showing 2233 - 2256 of 228,638
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001