apple-app-store-server-library-poc

MAL-2026-3123

npmmalware4/27/2026
Description

Malicious code in apple-app-store-server-library-poc (npm)

Indicators of Compromise
SHA256 Hashes (10)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Ecosystemnpm
Attack Typemalware
Published4/27/2026
Aliases
GHSA-4r99-2267-v7p2
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001