pkg:gem/[email protected]
first seen anywhere
execution.string-reconstructindicator-removal.timestamps
go
3 hours ago
go Fallout
The latest malware caught across open-source registries and marketplaces — evidence included.
Hostile catches · since Aug 1
500
TODAY
Tue Aug 4 · 2 catches · 0 waves · 2 singles
YESTERDAY
Mon Aug 3 · 10 catches · 0 waves · 3 singles
github.com/codyswanngt/lisa v2.323.2-0.20260804004420-2e5f04f9499c+incompatible
first seen anywhere
install-hook.remote-binaryvalidation.check
go
18 hours ago
npm postinstall fetches remote native executable
github.com/adbc-drivers/driverbase-go/testutil v0.0.0-20260803160758-8f4d5c91c894
credential-theft.env
go
1 day ago
github.com/kdlbs/kandev v0.84.2-0.20260803141219-cc6eb4dd5f62
trojanized.build-pipeline
go
1 day ago
SUNDAY
Sun Aug 2 · 20 catches · 0 waves · 3 singles
github.com/Zaeem20/FREE_PROXIES_LIST v0.0.0-20260802223625-9413b2f87a4e
first seen anywhere
go
1 day ago
CI pipeline fetches and executes remote code
github.com/DataDog/datadog-agent/pkg/util/winutil v0.79.0
trojanize.system-utilitiesregistry.run-key
go
2 days ago
SATURDAY
Sat Aug 1 · 3 catches · 0 waves · 3 singles
github.com/DataDog/datadog-agent/pkg/util/winutil v0.82.0-rc.9
first seen anywhere
trojanize.system-utilitiesregistry.run-key
go
2 days ago
github.com/jomcgi/homelab v0.0.0-20260802011128-98a51c1d7942
reverse-shell.dupautomation.agent
go
2 days ago
That's every sector reporting.
The full stream lives in the index →