dotenv-intended

MAL-2026-174

npmmalware1/9/2026
Description

Malicious code in dotenv-intended (npm)

Indicators of Compromise
SHA256 Hashes (3)
df2195d5589f3e44d82053db7cd9ae186dfd168b35c9db8f97baa29f0c636121
321eaa257985bd47bbf31b2f7ccdaef2df5b424b7b257400a48140ef6029e670
f435f31a4ec942931b1ae47b1e418579596f867876ec13e31e551022bafb035a
Details
Ecosystemnpm
Attack Typemalware
Published1/9/2026
Affected Versions
0
Aliases
GHSA-wrjh-25x7-qpfv
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001