open-agents-ai

MAL-2026-4628

npmmalware5/19/2026
Description

Malicious code in open-agents-ai (npm)

Indicators of Compromise
SHA256 Hashes (10)
32b7a0aed7bb5a7a842a129cbc43110a1f90f8eab8747ad7101e96fd4b3257de
8c0663d146131d47787d9023851f52d950bcf5269dfb8e27da4e4b183cd42a7e
9f4ce7d3d6f1d34540ff74431ce76bd58fbf56ddb98670e61bd2989d453080f1
c17f09531ea061a090955d6d992f6fe77b68203764b882ddfd03c2b2f78b7bbb
c7bc672acb5ffb45b94bc4b32ae325a94210430e9fab1504b8d258586528b367
d621442ec3b2259930c5a1f1a57f983aaa6a61212fb4cd5ebed532032fc90e28
63fb2da8f0dd939c7ac24c5877da88c47bdfdb30495ef08d3b43abc27426de15
a32cbcf59ff1112ab295b929e9dc24f29c7e129650e1ea32e6cf9af239435c9c
ecd54a57bfc95ce17e9e2279808810d09bb3285a15af6198f9f40f7a8f5307f7
fc20158f0f7883c5b18b352d10c6bfb1cede6a7b9bf93918c74e58f85547c8f6
Details
Ecosystemnpm
Attack Typemalware
Published5/19/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001