Detect Glassworm & trojan source attacks that employ unicode bidi attacks to inject malicious code
-
Updated
Sep 8, 2026 - JavaScript
Detect Glassworm & trojan source attacks that employ unicode bidi attacks to inject malicious code
Open-source supply-chain security scanner for npm, PyPI, Cargo, Go, RubyGems, Composer, NuGet, Docker, VS Code extensions, GitHub Actions, IaC and Solana C2. Detects GlassWorm, Shai-Hulud and 350+ threat indicators. CycloneDX SBOMs, SLSA provenance grading, attack-chain correlation.
a modular offensive security framework designed for executing Unicode-based attacks, like those seen in the "GlassWorm" compromises
AI code security scanner MCP server — detects invisible Unicode, Trojan Source, homoglyphs, Glassworm steganography, rules file backdoors, and dependency attacks in AI-generated code. Static analysis + CodeBERT deep learning. Runs locally.
Audit VS Code / Cursor / Windsurf extensions for supply-chain risk: unclaimed and squattable Open VSX namespaces, publisher drift between the Marketplace and Open VSX, and hidden-Unicode payloads (the GlassWorm trick). Offline, single Go binary.
Zero-dependency detection tools for npm supply chain attacks (Shai-Hulud, CanisterWorm, GlassWorm)
To associate your repository with the glassworm topic, visit your repo's landing page and select "manage topics."