Detect Glassworm & trojan source attacks that employ unicode bidi attacks to inject malicious code
-
Updated
Sep 8, 2026 - JavaScript
Detect Glassworm & trojan source attacks that employ unicode bidi attacks to inject malicious code
Open-source supply-chain security scanner, local and offline. Matches known-malicious packages, extensions, plugins, providers, container images and CI actions in 15 ecosystems, including transitive lockfile dependencies. Detects GlassWorm, Shai-Hulud and 350+ threat indicators. GitHub Action, MCP server, CycloneDX SBOMs, SLSA grading.
a modular offensive security framework designed for executing Unicode-based attacks, like those seen in the "GlassWorm" compromises
AI code security scanner MCP server — detects invisible Unicode, Trojan Source, homoglyphs, Glassworm steganography, rules file backdoors, and dependency attacks in AI-generated code. Static analysis + CodeBERT deep learning. Runs locally.
Audit VS Code / Cursor / Windsurf extensions for supply-chain risk: unclaimed and squattable Open VSX namespaces, publisher drift between the Marketplace and Open VSX, and hidden-Unicode payloads (the GlassWorm trick). Offline, single Go binary.
Zero-dependency detection tools for npm supply chain attacks (Shai-Hulud, CanisterWorm, GlassWorm)
To associate your repository with the glassworm topic, visit your repo's landing page and select "manage topics."