nottuff24

MAL-2026-10350

npmmalware7/13/2026
Description

Malicious code in nottuff24 (npm)

Indicators of Compromise
SHA256 Hashes (4)
b93994b136515925b1c8c235f9f82d613a02251695b90a6132d697a6877ece4a
98d91c65c2ae847d5e741575bbc60ac69c0d2aca4973888c6ce2fc85daac3e30
4d42becdc0883c2252c304f9d2992b0185e1d63396620c4942d2a93fc42eace6
75285e0fcc56331eb5361ce94c96b96d41c3586e76ffaaf4ef3ad23a8ee85d6b
Details
Ecosystemnpm
Attack Typemalware
Published7/13/2026
Aliases
GHSA-xvh2-mr69-9ffm
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001