LibKill v0.1.5

Leader posted 1 min read

The past 60 days have been brutal for supply chain security:

• 639 malicious versions across 323 packages in ONE hour (AntV wave)
• A worm with valid SLSA Build Level 3 provenance (TanStack)
• North Korean APTs injecting malware into "AI-assisted coding" workflows
• Credential stealers hiding in node-ipc, axios, lightning, and hundreds more
I built LibKill to answer one question: "Is my system clean?"
It scans your npm/pip packages against 2,800+ known compromised artifacts and tells you exactly what to remove. No SaaS, no API keys, no cloud. Just a single binary.

What's new in v0.1.5:

✅ Live threat feeds from 6 sources — Socket.dev, OSV.dev, GitHub Advisory DB, Cisco Talos, Unit 42, BleepingComputer
✅ uv support — detects Python packages installed via uv pip and uv tool
✅ Venv scanning — walks your project directories for virtual environments
✅ Windows Scripts/ path support
✅ 165 new malicious packages added — TrapDoor, Axios/Lazarus, CanisterSprawl, Contagious Interview, Solana typosquats
✅ 19 malware families tracked — PamDOORa, Quasar Linux RAT, CloudZ RAT, Nitrogen, and more
✅ GitHub token integration for live GHSA updates (optional, works without it)
One command to install:


curl -fsSL https://lnkd.in/dTv3ukhe | bash

Open source. MIT license. Cross-platform.

 https://github.com/firfircelik/libkill


More Posts

Your Backup Data Knows More Than You Think. HYCU aiR Is Finally Asking It the Right Questions.

Tom Smithverified - May 14

I Wrote a Script to Fix Audible's Unreadable PDF Filenames

snapsynapse - Apr 20

I spent years trying to get AI agents to collaborate. Then Opus 4.6 and Codex 5.3 wrote the rules

snapsynapse - Apr 20

Russian hackers crippled Toyota by attacking a cup holder suppliers threatening U.S. defense.

Tom Smithverified - Aug 8, 2025

Defending Against AI Worms: Securing Multi-Agent Systems from Self-Replicating Prompts

alessandro_pignati - Apr 2
chevron_left

Related Jobs

View all jobs →

Commenters (This Week)

2 comments
1 comment

Contribute meaningful comments to climb the leaderboard and earn badges!