chai-tools

MAL-2026-1006

npmmalware2/24/2026
Description

Malicious code in chai-tools (npm)

Indicators of Compromise
SHA256 Hashes (3)
cd9e9e8b30b139d7ad4bcef06753d2e9b1896845322a40e0cf0ff862adbcb3d8
27a98b20486f7e7fafdfb30cb31c6f9aaf7d2e05e776a7d59b09dfd9db11e12f
81ec1cbfc9ee7fbd1ea2783bcff1ec51388889f7a29fa03c40e4c1a3d17b311f
Details
Ecosystemnpm
Attack Typemalware
Published2/24/2026
Affected Versions
0
Aliases
GHSA-xp8h-j8vg-rffx
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001