sp-api-dev-assistant-mcp-server

MAL-2026-5853

npmmalware6/16/2026
Description

Malicious code in sp-api-dev-assistant-mcp-server (npm)

Indicators of Compromise
SHA256 Hashes (1)
41506fcb0f329d1b260c8aea68fe27eb7b648576521da211f366dc49459bc388
Details
Ecosystemnpm
Attack Typemalware
Published6/16/2026
Aliases
GHSA-hgm9-w4fm-65m9
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001