mcp-server-github

MAL-2026-5479

npmtyposquat6/9/2026
Description

Malicious code in mcp-server-github (npm)

Indicators of Compromise
SHA256 Hashes (2)
747734631bd95c9a23ba57ea3610af951c612b8841e9c2e2ab99c3c70f244886
9daf7f0ccde675bf09994ef3e587742a0284e19ca92c8c2e709ac465d0b85446
Details
Ecosystemnpm
Attack Typetyposquat
Published6/9/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001