chai-promise-tools

MAL-2026-677

npmmalware2/3/2026
Description

Malicious code in chai-promise-tools (npm)

Indicators of Compromise
SHA256 Hashes (3)
4406a20866edc56f03eff4272821c7993e0621588b95e3286ff4bf063216145b
8fbc46ec5143004a3a8dbf9138d7317efd21d323b0803a9c1c6f18b73f4ef7c6
e288a6b01935a2e48181dd40f2c1e9ce8bf4e2303f8753188a0324906613fd6e
Details
Ecosystemnpm
Attack Typemalware
Published2/3/2026
Affected Versions
0
Aliases
GHSA-2737-5rcq-jwmj
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001