Threat · curated 20 Aug 2026
AI agent suggested installing a malware package. Engineer almost took its advice
First reported theregister.com
Coverage timeline
Single-source incident — first reported, latest, and curated coincide.
Why it matters
Slopsquatting weaponizes LLM package-name hallucinations into a software supply-chain attack, meaning developers who trust AI coding assistant recommendations without verification can be tricked into installing backdoored packages.
An engineer at software firm Softjourn nearly installed a malware package after an AI agent recommended a legitimate-sounding but hallucinated package name, a technique dubbed 'slopsquatting' where attackers register real packages under the exact fictitious names LLMs invent. The developer caught it by following a company policy of checking GitHub source, download counts, and creation dates before installing AI-recommended dependencies.