chai-pack

MAL-2025-192725

npmmalware12/23/2025
Description

Malicious code in chai-pack (npm)

Indicators of Compromise
SHA256 Hashes (4)
19978df65270f651588b97e4f4dc4c7faa561c93925fda06cbe4d75b75a94196
a153ef79c99f8b960c8e0557a16cb187571a31c3d4c2479e177ab630b36b6af6
e971cc20e649cc965be323ec45888434a827875cd9aca6ea38dec784c5716c4a
b5780e0f5c67426d679ef2fceb31dbd8c1093f8b1d81ec55583989355dc7a3f3
Details
Ecosystemnpm
Attack Typemalware
Published12/23/2025
Aliases
SNYK-JS-CHAIPACK-14152241
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001