Supply-chain attack hits MemOS: malicious Golang binaries hidden in PyPI and npm packages
cyb3rops · x · 2026-09-23
Nextron Research flagged a supply-chain attack on the MemOS project affecting PyPI memoryos==2.0.34 and npm @memtensor/[email protected]. Both packages ship hidden platform-specific malicious Golang binaries in a .sckit directory, launched silently during normal use: the PyPI package triggers on logging initialization, the npm plugin at gateway startup and while processing user prompts. The binaries receive the host environment, and the npm variant also receives prompt text. Embedded configs point to hard-coded remote endpoints, risking exposure of developer credentials, tokens, configuration, and agent data. Full IOCs (SHA-256 hashes) are published in a gist; the investigation is ongoing.
More from coding & agent
- Specula: open-source agentic tool finds deep concurrency bugs via auto-written TLA+ specs — tianyin_xu · 2026-09-23
- TLAPS-Bench launches in alpha to test whether AI agents can formally prove system correctness — tianyin_xu · 2026-09-23
- Dev builds a character-swap LoRA dataset end-to-end with Codex and GPT Image 2.5 — ostrisai · 2026-09-23
- Opus 5.5 solved his agent-switching problem in about 45 minutes — willcb · 2026-09-23
- GPT-6 Sol and GPT-6 Luna land in GitHub Copilot, expanding OpenAI's lineup to three — lee_stott · 2026-09-23
- OpenAI reportedly plans Free, Prototype, and Accelerate tiers for its app-building platform — testingcatalog · 2026-09-23