express-core-validator

MAL-2026-1062

npmmalware2/27/2026
Description

Malicious code in express-core-validator (npm)

Indicators of Compromise
SHA256 Hashes (2)
9411c5aa3c5ffe440a724f81cf4fff163574207f60eca753108846dc9225ec34
f4917c569276f08ce3f25d5426d0621945c0664c14badaff37739cde37fba05b
Details
Ecosystemnpm
Attack Typemalware
Published2/27/2026
Affected Versions
0
Aliases
GHSA-pqqv-f6rm-588j
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001