@testfei/hallo-word

MAL-2025-191971

npmmalware12/3/2025
Description

Malicious code in @testfei/hallo-word (npm)

Indicators of Compromise
SHA256 Hashes (5)
c47361f034c5d49f2e1961b84bb803de7cf2497ed0c56aea61ca3980e0a2ef95
f0875b81011bbe047a0974df19a0a0880fd5fb3ae773662b3f5cf63ebdd5d3f6
79743d47a23a6bb08420819842b6fc5231af618a9db690f117fd6e361c598559
2a3a7879534f97e19b353a2d62c81c5823b2a72a341233c9d96ce2816b6d483a
3c9dd2639f2dec69604a2db9f8a29b60abdc2a0cebadf7d83c0dcf939d8c9eba
Details
Ecosystemnpm
Attack Typemalware
Published12/3/2025
Aliases
GHSA-pvc8-vm69-c9g2
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001