Supply-chain attack hits MemOS: malicious Golang binaries hidden in PyPI and npm packages

cyb3rops · x · 2026-09-23

Nextron Research flagged a supply-chain attack on the MemOS project affecting PyPI memoryos==2.0.34 and npm @memtensor/[email protected]. Both packages ship hidden platform-specific malicious Golang binaries in a .sckit directory, launched silently during normal use: the PyPI package triggers on logging initialization, the npm plugin at gateway startup and while processing user prompts. The binaries receive the host environment, and the npm variant also receives prompt text. Embedded configs point to hard-coded remote endpoints, risking exposure of developer credentials, tokens, configuration, and agent data. Full IOCs (SHA-256 hashes) are published in a gist; the investigation is ongoing.

Original post →

More from coding & agent

coding & agent channel →