Threats Tagged 'mal-2026-14294'
View all threats tagged with 'mal-2026-14294'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'mal-2026-14294'
Click on any threat for detailed analysis and mitigation recommendations
Malicious code in mc-registry (npm) 0 The npm package mc-registry (versions 1.0.8 and 1.0.9) is a malicious package that impersonates the legitimate hyperweb-io/chain-registry package. It misleads users by copying the legitimate package's README and metadata but diverges in functionality by re-exporting an unrelated and unvetted HTTP provider from the chain-analyze dependency. This injected dependency executes code upon import and includes network communication patterns that may funnel users into potentially malicious HTTP interactions. Join the discussion | GCVE Database | 08/19/2026, 08:22:22 UTC Added: 08/19/2026, 13:50:43 UTC |
Showing 1 to 1 of 1 result