m365-action-sdk

MAL-2025-191500

npmmalware12/1/2025
Description

Malicious code in m365-action-sdk (npm)

Indicators of Compromise
SHA256 Hashes (2)
2a647b4c1144f1fc77a782dcc21ff359b1eecf83ecf7feaae9c0c2f3949670af
41899b4f5df3e91b3c1d1d83bfada41c83afbe17c90245a5410e87518e4e78fb
Details
Ecosystemnpm
Attack Typemalware
Published12/1/2025
Aliases
GHSA-6xfg-v6q5-f283
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001