Supply Chain Incidents

Malicious packages, backdoors, typosquats, and dependency confusion attacks

228,638
Total Incidents

@flowselections/core

npm

MAL-2026-4390

Malicious code in @flowselections/core (npm)

Malware
May 2026

@riteshkumar04/stack-audit

npm

MAL-2026-4426

Malicious code in @riteshkumar04/stack-audit (npm)

Malware
May 2026

martinez-polygon-clipping-tony

npm

MAL-2026-4606

Malicious code in martinez-polygon-clipping-tony (npm)

Typosquat
May 2026

morin

PyPI

MAL-2026-4757

Malicious code in morin (PyPI)

Malware
May 2026

aurapro-ui

PyPI

MAL-2026-4742

Malicious code in aurapro-ui (PyPI)

Malware
May 2026

did-0091

npm

MAL-2026-4177

Malicious code in did-0091 (npm)

Malware
May 2026

aurafarmer

PyPI

MAL-2026-4741

Malicious code in aurafarmer (PyPI)

Malware
May 2026

silly-logger

PyPI

MAL-2026-4767

Malicious code in silly-logger (PyPI)

Malware
May 2026

openirf

PyPI

MAL-2026-4761

Malicious code in openirf (PyPI)

Typosquat
May 2026

eplang

PyPI

MAL-2026-4748

Malicious code in eplang (PyPI)

Malware
May 2026

pycalendar-api

PyPI

MAL-2026-4764

Malicious code in pycalendar-api (PyPI)

Typosquat
May 2026

glass-of-water

PyPI

MAL-2026-4751

Malicious code in glass-of-water (PyPI)

Malware
May 2026

nebulix-ai

PyPI

MAL-2026-4758

Malicious code in nebulix-ai (PyPI)

Malware
May 2026

saas-common-lib-473815

PyPI

MAL-2026-4766

Malicious code in saas-common-lib-473815 (PyPI)

Malware
May 2026

clearml-truen-patch

PyPI

MAL-2026-4745

Malicious code in clearml-truen-patch (PyPI)

Malware
May 2026

zod-to-js

npm

MAL-2026-4740

Malicious code in zod-to-js (npm)

Malware
May 2026

soundsource

PyPI

MAL-2026-4769

Malicious code in soundsource (PyPI)

Malware
May 2026

buddyme

PyPI

MAL-2026-4743

Malicious code in buddyme (PyPI)

Malware
May 2026

qontract-reconcile

PyPI

MAL-2026-4765

Malicious code in qontract-reconcile (PyPI)

Typosquat
May 2026

crw

PyPI

MAL-2026-4746

Malicious code in crw (PyPI)

Malware
May 2026

venturo-playwright-runner

npm

MAL-2026-4701

Malicious code in venturo-playwright-runner (npm)

Malware
May 2026

collected-forms-embed-js

npm

MAL-2026-4175

Malicious code in collected-forms-embed-js (npm)

Malware
May 2026

venturo-playwright

npm

MAL-2026-4700

Malicious code in venturo-playwright (npm)

Malware
May 2026

@arbocollab/arbo-web-people

npm

MAL-2026-4362

Malicious code in @arbocollab/arbo-web-people (npm)

Malware
May 2026
Showing 2353 - 2376 of 228,638
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001