nottuff22

MAL-2026-10349

npmmalware7/13/2026
Description

Malicious code in nottuff22 (npm)

Indicators of Compromise
SHA256 Hashes (4)
35eec4d94369e0ebfd9e090f6031de6617dccd6ed5091cf1eeb210d69e34d77d
07035c6d64cbb510ca87260a3a3ca216e2ddfcffcb0ffba6d40ba9f8444c5e0f
493d87c4178cc5d11d36a853183cdc87d7db15b1bda282f4286d5d9b77f94c49
ad092e26dff73a40442da3f135e92419d66e0a162fcfae5fab2a3c76e399a96f
Details
Ecosystemnpm
Attack Typemalware
Published7/13/2026
Aliases
GHSA-jpc2-mw4c-hfgq
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001