Malicious Package Registry

Curated registry of known-malicious open-source packages. Cross-referenced during every SCA scan; matches raise Critical findings. Refreshed daily from OSV.dev / OpenSSF Malicious Packages feed.

Active Entries

29

Packages blocked on match

Last Sync

20h ago

2026-07-30 19:13

OpenSSF Malicious Packages + SF-Curated seed
Registry
Ecosystem Package Advisory Source Summary Published
npm

babelcli

SF:npm-babelcli-2017

SF-Curated

Typosquat of babel-cli (Aug 2017 campaign).

2026-06-01
npm

coa

SF:npm-coa-2021

SF-Curated

Account takeover; malicious password-stealer releases (Nov 2021).

2026-06-01
npm

colors

SF:npm-colors-2022

SF-Curated

Protestware: infinite-loop sabotage release by maintainer (Jan 2022).

2026-06-01
npm

crossenv

SF:npm-crossenv-2017

SF-Curated

Typosquat of cross-env; exfiltrated env vars (Aug 2017).

2026-06-01
npm

d3.js

SF:npm-d3.js-2017

SF-Curated

Typosquat of d3 (Aug 2017 campaign).

2026-06-01
npm

electorn

SF:npm-electorn-typosquat

SF-Curated

Typosquat of electron.

2026-06-01
npm

electorn

OSV:MAL-2025-19413 OSV

Malicious code in electorn (npm)

2025-08-14
npm

eslint-scope

SF:npm-eslint-scope-2018

SF-Curated

Maintainer credential compromise; token-stealing payload (Jul 2018).

2026-06-01
npm

event-stream

SF:npm-event-stream-2018

SF-Curated

Cryptocurrency wallet exfiltration payload injected via flatmap-stream (2018).

2026-06-01
npm

faker

SF:npm-faker-2022

SF-Curated

Protestware: maintainer wiped repo + released empty package (Jan 2022).

2026-06-01
npm

flatmap-stream

SF:npm-flatmap-stream-2018

SF-Curated

Trojanized sub-dependency of event-stream (2018).

2026-06-01
npm

flatmap-stream

OSV:MAL-2025-20690 OSV

Malicious code in flatmap-stream (npm)

2025-08-14
npm

jquery.js

SF:npm-jquery.js-2017

SF-Curated

Typosquat of jquery (Aug 2017 campaign).

2026-06-01
npm

mongose

SF:npm-mongose-typosquat

SF-Curated

Typosquat of mongoose.

2026-06-01
npm

node-ipc

SF:npm-node-ipc-2022

SF-Curated

'peacenotwar' geo-targeted file-overwrite payload (Mar 2022).

2026-06-01
npm

node-ipc

OSV:MAL-2026-3744 OSV

Malicious code in node-ipc (npm)

2026-05-14
npm

rc

SF:npm-rc-2021

SF-Curated

Account takeover; same campaign as coa (Nov 2021).

2026-06-01
npm

ua-parser-js

SF:npm-ua-parser-js-2021

SF-Curated

Maintainer account compromise; 3 tainted releases in Oct 2021.

2026-06-01
NuGet

Newtonsft.Json

SF:nuget-newtonsft-typo

SF-Curated

Typosquat of Newtonsoft.Json.

2026-06-01
NuGet

System.IO.Ports.Malicious

SF:nuget-sio-ports-typo

SF-Curated

Typosquat of System.IO.Ports.

2026-06-01
PyPI

colourama

SF:pypi-colourama-typo

SF-Curated

Typosquat of colorama; cryptomining payload.

2026-06-01
PyPI

ctx

SF:pypi-ctx-2022

SF-Curated

Account takeover; AWS credential exfiltration (May 2022).

2026-06-01
PyPI

djanga

SF:pypi-djanga-typo

SF-Curated

Typosquat of django.

2026-06-01
PyPI

jeIlyfish

SF:pypi-jellyfish-typo-2019

SF-Curated

Typosquat of jellyfish (capital-I vs lowercase-l).

2026-06-01
PyPI

phpass

SF:pypi-phpass-2022

SF-Curated

Same May 2022 campaign as ctx; AWS credential theft.

2026-06-01
PyPI

python3-dateutil

SF:pypi-dateutil-typo-2019

SF-Curated

Typosquat of python-dateutil (Dec 2019).

2026-06-01
PyPI

pytorch-nightly-malicious

SF:pypi-pytorch-nightly-2022

SF-Curated

Dependency-confusion attack on pytorch-nightly (Dec 2022).

2026-06-01
PyPI

requesocks

SF:pypi-requesocks-typo

SF-Curated

Typosquat of requests; credential exfil.

2026-06-01
PyPI

urlib3

SF:pypi-urlib3-typo

SF-Curated

Typosquat of urllib3.

2026-06-01
🛡️ Security AI