celonix-otp-react

MAL-2026-4509

npmbackdoor5/21/2026
Description

Malicious code in celonix-otp-react (npm)

Indicators of Compromise
SHA256 Hashes (5)
09e0b6c5a067f1cf4b3523b3ac0152d3a0ac9919ac05b0988a0874e930522a86
3576213d7d58f98ecb6656b551731ee274a9eafc662b16cc6fd8ff231fe23354
96548d4aeceb2e9006252619d9bc3b11a8288d6fc50b1be0d90422802f02cf86
b2a2c2ef10fad05d231c4afef2a6c458d3be438e25414f48f35ff26cd233d0ce
df58532b5edb3f7a5ad9734a7f4fa46f062c0f220d578db42a223188d078d9bb
Details
Ecosystemnpm
Attack Typebackdoor
Published5/21/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001