@opengov/form-utils

MAL-2026-2063

npmbackdoor3/22/2026
Description

Malicious code in @opengov/form-utils (npm)

Indicators of Compromise
SHA256 Hashes (3)
cadfb3e1dfe1e826a7cedf93a29d9d6f604f1ffe372fad6d6ed4b8fd3acc893c
1a11b439f6b43c87972ca0e9cf8a54332a77b44da906d0bb0068e0af2532776b
895c7927c0ce07210bdfc17f8fb29d0d7af9a6338e3d2c982dc2b31ad9cca394
Domains (1)
litellm.cloud
Details
Ecosystemnpm
Attack Typebackdoor
Published3/22/2026
Aliases
GHSA-q4j2-j63f-5vqx
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001