Threat · curated 20 Aug 2026

AI agent suggested installing a malware package. Engineer almost took its advice

Coverage timeline

20 Aug 2026theregister.com

Single-source incident — first reported, latest, and curated coincide.

Why it matters

Slopsquatting weaponizes LLM package-name hallucinations into a software supply-chain attack, meaning developers who trust AI coding assistant recommendations without verification can be tricked into installing backdoored packages.

An engineer at software firm Softjourn nearly installed a malware package after an AI agent recommended a legitimate-sounding but hallucinated package name, a technique dubbed 'slopsquatting' where attackers register real packages under the exact fictitious names LLMs invent. The developer caught it by following a company policy of checking GitHub source, download counts, and creation dates before installing AI-recommended dependencies.