metrics-pipeline-d8k2

MAL-2026-5858

npmmalware6/16/2026
Description

Malicious code in metrics-pipeline-d8k2 (npm)

Indicators of Compromise
SHA256 Hashes (6)
01ad2ee3d3807102a3f02c01af0d3fec46d91e9764eb77a8bcedf9c6be7fc3b0
54c1af327fbf53a18b26a293093ff11b2ac19e346468fca66ff083166972dc7f
5b0d9377de514d01f4b2c4007ca1d7dfd5787ab72c185eb74a6f4f53ac1658ba
89a516af939e2a8520621d9ef7f847517da94269623a71aea9f2f00d3188a954
c113970b47b623dedfa59e8ff71bf20bfca793e1e1d9ff76b29eca1bf674dc9f
3a44ea64194cd8e1b678076116fadf8bc05e764bb8d478c72266cd0bf3874da4
Details
Ecosystemnpm
Attack Typemalware
Published6/16/2026
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001