@kills_sh/bootstrap

MAL-2026-3275

npmmalware5/4/2026
Description

Malicious code in @kills_sh/bootstrap (npm)

Indicators of Compromise
SHA256 Hashes (1)
910a65c32d60e4bd1c5c270b3502bec74d86f557f8706f8eba42b6b6071ca669
Details
Ecosystemnpm
Attack Typemalware
Published5/4/2026
Aliases
GHSA-gxfc-h756-8jpg
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001