private-internal-sdk

MAL-2026-396

npmmalware1/21/2026
Description

Malicious code in private-internal-sdk (npm)

Indicators of Compromise
SHA256 Hashes (2)
79808bcf47a123d530c1faee89a781afd9467fc5082d68c8614b6b7aab197f30
368f6bede2407a1000e1a32b729d86d4e32e054965cde08ce07b732266c11186
Details
Ecosystemnpm
Attack Typemalware
Published1/21/2026
Affected Versions
0
Aliases
GHSA-35m9-w5cr-7fgm
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001