discovered 03 Aug 2026
npm-scan
→ View on GitHubnpm-scan is an advanced supply chain threat detection tool designed to identify sophisticated attacks that typical tools like npm audit, Snyk, and Socket often overlook. It excels at detecting obfuscated payloads, credential theft, eBPF kernel rootkits, and various AI-targeted attacks, boasting over 95% confidence in real-world threat scenarios. Key features include comprehensive behavioral pattern recognition and a dual detection approach that enhances compliance and reduces financial liability associated with data breaches.