@emilgroup/changelog-sdk-node

MAL-2026-2040

npmbackdoor3/22/2026
Description

Malicious code in @emilgroup/changelog-sdk-node (npm)

Indicators of Compromise
SHA256 Hashes (3)
462a24c1c1d2cf0ad7c140aa925cbcff6d0ba9bd567d43728b541cd72d5a70d7
eeeaacce965f54999e4e8fc1a9db77251e1c3956c24672ffe63e1285c46e737d
d7f65906d17c01e37d36c9125aa3a2fc5ea280bfa6ebfe5df0131deaec5ba6f9
Domains (1)
litellm.cloud
Details
Ecosystemnpm
Attack Typebackdoor
Published3/22/2026
Aliases
GHSA-wcrr-xhm3-j3x9
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001