json-specparse

MAL-2026-1368

npmmalware3/12/2026
Description

Malicious code in json-specparse (npm)

Indicators of Compromise
SHA256 Hashes (4)
18627c1c0def6faaa8722de5bc97f27981110eaf8844500039b842de043d2f62
a9b7464a2349596a7884e9cc1a56354e6a9e24919a93e7de07fef14dd5c1b2af
28ad383c55884ea3f12626f13a56f36b7fbc1eab649de47cfcb657478162850c
7bb576eb060db82d26a3cd1314730ccd8eb4b228477c77fb46521798f3f542bd
Details
Ecosystemnpm
Attack Typemalware
Published3/12/2026
Affected Versions
0
Aliases
GHSA-w3m6-xffr-576m
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001