js-unpack

MAL-2026-707

npmmalware2/3/2026
Description

Malicious code in js-unpack (npm)

Indicators of Compromise
SHA256 Hashes (3)
5d6859e5b9008340bf7f7c4d7128416913b37bf079c0b1657f6e9857b6b9f0db
baae4c9e1fb444bb1fc5b81f94160a8301839d4ce71d2cb92b50b06037018c73
b0379c6c00cc805710b7ae2c3e7273e29c97c602c3103544285bcb16062b71df
Details
Ecosystemnpm
Attack Typemalware
Published2/3/2026
Affected Versions
0
Aliases
GHSA-6444-v9wg-78rr
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001