onboardconnect-agent

MAL-2026-4627

npmmalware5/22/2026
Description

Malicious code in onboardconnect-agent (npm)

Indicators of Compromise
SHA256 Hashes (9)
30e75809f132f2cac2c85cf0bb18b445a9df490ac709a2d42eab018f430f07af
35813ed05d8b88c8db8caf673571dbe285ceff43c5b93c9a5e85992383844fa5
4cda0c95b483c82968d2b75214fd2d06061eb09001d46bd5cac4b8517d34bdeb
5b9677346fc5c8f57ad8de388659543ce2ed5863428723484cd7dbfdc90f28b5
9c17efe362ab4daf81f1ee7efe462a256ba325562a255906102d10d4a9ee87e5
b02ef4a70a4d4322b88f002cd5151a3ad6a9036379c82d7febff362daf7dee97
c609b6742ce86266143c09e5e33fdc3cc3d4a65891fc2e7a73eb976d2a25b4d7
f0c350755d37ffa3c7c04f7dcfaa31c2c2b3fc201ec3f5ac23aa96b5568a176f
f1362c8a1baa1868bc39797b170ecd8018b1d5181b599cec13f52620836e13d0
Details
Ecosystemnpm
Attack Typemalware
Published5/22/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001