chiprook
← Security
SecurityOctober 5, 2026, 16:44

Slopsquatting: AI agents install packages attackers registered in advance

A USENIX Security 2025 study found 19.7% of AI-generated code samples reference non-existent packages, producing 205,474 invented names. Attackers pre-register these names on npm and PyPI, and coding agents install them automatically — in one Anthropic test a malicious package was downloaded by 15 real systems within an hour.

Slopsquatting: AI agents install packages attackers registered in advance
#Npm#PyPI#Anthropic
Read next
Security

VDB: 83 of 87 AI-hallucinated package names are unclaimed, exposing slopsquatting risk

Security

Compromised MemTensor packages push sckit credential stealer via npm and PyPI

Security

Malicious npm packages evade install-script defenses at runtime

Security

TanStack npm supply-chain attack: Mini Shai-Hulud worm hit 42 packages