nottuff16

MAL-2026-10342

npmmalware7/13/2026
Description

Malicious code in nottuff16 (npm)

Indicators of Compromise
SHA256 Hashes (4)
6cdeb667c24df30836793b69663a8804df4fe36a62c480c1f1419b4afe5b4b42
570cc848bb0e31176fc13945f1cfbd39b64a671de7e2d1913b6951513c0b21b8
b0e55698204d65cc30f3e7278cd7f575c82a0c5cadbd3a063c82203be74e5655
d9724a8afb60c54ff921ed08f8d103e2bfba7c37393e7bf78ec4bf523489e4aa
Details
Ecosystemnpm
Attack Typemalware
Published7/13/2026
Aliases
GHSA-357m-v9rc-p2jh
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001