@emilgroup/commission-sdk-node

MAL-2026-2043

npmbackdoor3/22/2026
Description

Malicious code in @emilgroup/commission-sdk-node (npm)

Indicators of Compromise
SHA256 Hashes (3)
4cabfea2e9827644e876fc2529babb68ff76c7ad1d854eb2396cd1141178363f
85f1482a778fd65de3055f40733fdf55e9e0e2c3495dda2c72ff686d0841b91c
cd3179bb0926aaae8212e8836e44cab3894b98375a397c01ca7cfdb801ebe0cb
Domains (1)
litellm.cloud
Details
Ecosystemnpm
Attack Typebackdoor
Published3/22/2026
Aliases
GHSA-cmfv-mmcw-jpw3
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001