stylus.js

MAL-2026-542

npmmalware1/27/2026
Description

Malicious code in stylus.js (npm)

Indicators of Compromise
SHA256 Hashes (2)
228752dfb0c639ecaabfe0fc0189046c016a56e66ffae8ebb59eaeb675d9d935
da337331b168fe53efb22dcc1d3a935e35010e59a40d5d222ee18aa89fe82e42
Details
Ecosystemnpm
Attack Typemalware
Published1/27/2026
Affected Versions
0
Aliases
GHSA-7hw4-xjm9-2fr7
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001