nottuff30

MAL-2026-10356

npmmalware7/13/2026
Description

Malicious code in nottuff30 (npm)

Indicators of Compromise
SHA256 Hashes (4)
47161ed9ed6a628062720b39942fc2d70f1725d0adbd253499fce5f7360cd3f7
f4a979285347756e69976ca9775cf22e923002ec93ede98adc0dccd7999ea087
fae3249db7fa5c4d92de1f77ed66d09862620f65ecc82bd3730d6c7b065c2b5a
c9a55d09731563cc9338c45e68a064ab474266408a3a46739bc63b3a87f3ea8f
Details
Ecosystemnpm
Attack Typemalware
Published7/13/2026
Aliases
GHSA-cjjx-m383-7r46
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001