Niflheim World

Welcome to Niflheim !

  • First 5 messages from new users (pre-moderated user) will be checked for flood/spam before being posted on the forum. Users will also be checked for a multi-account.
    If you want to communicate without delay, get a free Huscarl status (how to get - User Groups), or buy premium status to see all hidden content (how to buy - Premium status)

    The administrator has only one telegram - @ftmadmin and our chat - Link on chat

[Tool] npmscan.com — Free scanner for malicious npm packages (obfuscation, drainers, postinstall hooks)


neleb85579

Under Review
Under Review
Joined
Jun 4, 2026
Messages
1
Reaction score
0
NL COIN
10
Telegram
block_chain_dev
Hey guys,

With the recent wave of npm supply-chain attacks (typosquatting, maintainer takeovers, hidden execution in binding.gyp, etc.), I built a focused scanner: https://npmscan.com

What it catches:
- Heavy obfuscation / packer patterns
- Suspicious postinstall / preinstall hooks
- Drainers & credential exfil
- Known malicious indicators + heuristics (claims 99.8% on their dataset)

Scanned ~2.5M packages so far. Free to use, no login required for basic scans.

Example of recent catches: http://npmscan.com/latest-vulnerabilities/

Feedback welcome — especially from people who deal with malware dev / red teaming on JS side. What evasion techniques should I improve detection for?

GitHub / more details on the site.
 

Attachments

shape1
shape2
shape3
shape4
shape7
shape8
Top