json-web-sources

MAL-2026-820

npmmalware2/9/2026
Description

Malicious code in json-web-sources (npm)

Indicators of Compromise
SHA256 Hashes (2)
7b5b7f3896b01dd45503daa7565b91666029b06751c908d7e41fa1ccd23ca347
5b1334dba3ed3954154395d5993332e1deb8b238be09d0adcd260e3b35d98acc
Details
Ecosystemnpm
Attack Typemalware
Published2/9/2026
Affected Versions
0
Aliases
GHSA-7r6g-f9q3-q5fg
Agentic AI · Pentesting

Ready for Agentic Automated Testing?

Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.

Zero false positives
PoC for every finding
30+ tools orchestrated
Setup in 5 minutesSOC 2 & ISO 27001