@dekuzxc/nexca

MAL-2026-4380

npmmalware5/21/2026
Description

Malicious code in @dekuzxc/nexca (npm)

Indicators of Compromise
SHA256 Hashes (3)
35a4db02ce3d3ea022c8a6b5349975b4721d3f2c5b516b6c3dd3dddbfa802271
368373b13e54a5d4ab6094f16b9dfb5a53689d0bb247eafc873c90900e80dc9b
be8ff2a192c6008c348822bf28de5f51394b459996c6a61d55fa10ab5325cbca
Details
Ecosystemnpm
Attack Typemalware
Published5/21/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001