picking-miniapp

MAL-2026-646

npmmalware2/2/2026
Description

Malicious code in picking-miniapp (npm)

Indicators of Compromise
SHA256 Hashes (2)
0d2a7046f9c602dfce90cc2c44cbbd8c7d8c9749929258f31e30fa899794e23e
a65c40c2b2607ac2d8df224c24ff7fcc349a20993fadc53e544289d10a24a510
Details
Ecosystemnpm
Attack Typemalware
Published2/2/2026
Affected Versions
0
Aliases
GHSA-8fp4-7xff-mpwm
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001