@sourav_chanduka/core-no-ngrok

MAL-2026-11230

npmmalware7/30/2026
Description

Malicious code in @sourav_chanduka/core-no-ngrok (npm)

Indicators of Compromise
SHA256 Hashes (1)
3cde51a882f2a66e53c2a19231a1963c78555a63a7e2ea9c8e23b378ec072bd1
Details
Ecosystemnpm
Attack Typemalware
Published7/30/2026
Aliases
GHSA-qrx2-r7m9-fw6x
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001