@wengine-ai/claude-code-router-shared

MAL-2026-4468

npmmalware5/20/2026
Description

Malicious code in @wengine-ai/claude-code-router-shared (npm)

Indicators of Compromise
SHA256 Hashes (7)
3c19f8a7681f8c3cfc253a92fdd5df997504932a94d5808a16d02d3ff1d022d3
45e362000d036139e02a066a82ec157314a07796e0e855cdce184cc081ca4591
6795396e80ff11de703186fa1afb45b55e5d4013de5decf47fa3f0a7b861c64b
83e09240cee3dad2cdbe9b369b7538bf4fcaa2a7ba1a75ceab62cc0498e56b93
99790274d8c8ab9d1c9cb910ed30aaaaa266d0a594ed6959bef7c54435022830
a9a232664d2c2a2e8c32a4a35cb44fcde412f96991e62713bafab7ca9b1c8f24
eaaf2212ec0c3bb15d6ab48d8c0e71a055db79e8202b220ebd8b77d50cc6a4c8
Details
Ecosystemnpm
Attack Typemalware
Published5/20/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001