setup-cicd

MAL-2026-6686

npmmalware6/30/2026
Description

Malicious code in setup-cicd (npm)

Indicators of Compromise
SHA256 Hashes (1)
301870db8c916063750dee85539f82c8b68655eb030059872888c8490607d2f4
Details
Ecosystemnpm
Attack Typemalware
Published6/30/2026
Aliases
GHSA-5rc3-r829-w347
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001