#Slopsquat
Hell yeah gonna vibecode some slopsquat
April 13, 2025 at 5:22 PM
slopsquat that bitch!
April 20, 2025 at 10:46 PM
I wanna make a harmless slopsquat of like a latex package that turns the default font to comic sansn
LLMs hallucinating nonexistent software packages with plausible names leads to a new malware vulnerability: "slopsquatting."
LLMs can't stop making up software dependencies and sabotaging everything
: Hallucinated package names fuel 'slopsquatting'
www.theregister.com
April 13, 2025 at 5:29 AM
Let's slopsquat these clankers, choom!
July 29, 2025 at 8:42 PM
Do we need to de-slopsquat the web now? ;-p
April 22, 2025 at 12:45 AM
Sounds more like slopbait to me. Or since the package is acting like a virus pretending to be an immune cell, perhaps a slopmimic or slopmime.

Anything sounds better to me than slopsquat. But I'm not in charge of these things. 😂
April 22, 2025 at 5:37 PM
I recently saw an article about "slopsquatting" (www.tomsguide.com/ai/slopsquat...) which could result instead in your AI code installing malware on your computer or into software you intend to distribute.
Slopsquatting: The worrying AI hallucination bug that could be spreading malware
A new AI trick could be infecting your computer
www.tomsguide.com
April 24, 2025 at 3:05 AM
We Track What AI Gets Wrong.
// #Slopsquat Detection & #AI Package Security
// Real-Time #Threat Intelligence
// Built by devs. For devs. Against the machines.

Try out devhorrors.com

#DevHorrors #VibeCoding #SoftwareEngineering #Code #Cybersecurity #Slopsquatting
September 8, 2026 at 4:21 PM
For the moment, I assume it's not feasible to slopsquat on fake sources, at least not at scale, but that's only one category of problems associated with fake citations. The other is real citations used in misleading ways. I'm not smart enough to know how to fix this.
February 11, 2026 at 2:28 PM
We Track What AI Gets Wrong.
// #Slopsquat Detection & #AI Package Security
// Real-Time #Threat Intelligence
// Built by devs. For devs. Against the machines.

Try out devhorrors.com

#DevHorrors #VibeCoding #SoftwareEngineering #Code #Cybersecurity #Slopsquatting
September 16, 2026 at 8:25 PM
We Track What AI Gets Wrong.
// #Slopsquat Detection & #AI Package Security
// Real-Time #Threat Intelligence
// Built by devs. For devs. Against the machines.

Try out devhorrors.com

#DevHorrors #VibeCoding #SoftwareEngineering #Code #Cybersecurity #Slopsquatting
September 16, 2026 at 8:20 PM
We Track What AI Gets Wrong.
// #Slopsquat Detection & #AI Package Security
// Real-Time #Threat Intelligence
// Built by devs. For devs. Against the machines.

Try out devhorrors.com

#DevHorrors #VibeCoding #SoftwareEngineering #Code #Cybersecurity #Slopsquatting
September 7, 2026 at 9:27 PM
We Track What
AI Gets Wrong.
// #Slopsquat Detection & #AI Package Security
// Real-Time #Threat Intelligence
// Built by devs. For devs. Against the machines.

Try out devhorrors.com

#DevHorrors #VibeCoding #SoftwareEngineering #Code #Cybersecurity #Slopsquatting
September 4, 2026 at 8:58 PM
So, is someone who uses the slopsquat a Squat cobbler?

😳🤨😅

I'll see myself out...
Squatcobbler Saul GIF
ALT: Squatcobbler Saul GIF
media.tenor.com
December 28, 2025 at 2:03 AM
she slopsquat on my large language model til i achieve singularity
LLMs hallucinating nonexistent software packages with plausible names leads to a new malware vulnerability: "slopsquatting."
LLMs can't stop making up software dependencies and sabotaging everything
: Hallucinated package names fuel 'slopsquatting'
www.theregister.com
April 13, 2025 at 1:07 AM
Love a good slopsquat
1. LLM-generated code tries to run code from online software packages. Which is normal but
2. The packages don’t exist. Which would normally cause an error but
3. Nefarious people have made malware under the package names that LLMs make up most often. So
4. Now the LLM code points to malware.
LLMs hallucinating nonexistent software packages with plausible names leads to a new malware vulnerability: "slopsquatting."
April 13, 2025 at 1:10 AM
waiting for a researcher to find a way to slopsquat hallucinated paper references, like malware purveyors can slopsquat hallucinated software libraries www.theregister.com/2025/04/12/a...
May 30, 2025 at 3:20 PM
Fired by AI? No problem, make
up some bullshit packages and slopsquat your way to financial freedom! What a time to be alive.
LLMs hallucinating nonexistent software packages with plausible names leads to a new malware vulnerability: "slopsquatting."
LLMs can't stop making up software dependencies and sabotaging everything
: Hallucinated package names fuel 'slopsquatting'
www.theregister.com
April 13, 2025 at 8:18 PM
So, coding LLMs are consistently hallucinating non existent package names - and the bad guys are then supplying packages with those names (and some embedded malicious code) to "slopsquat" their way into systems. Really interesting and alarming research! socket.dev/blog/slopsqu...
The Rise of Slopsquatting: How AI Hallucinations Are Fueling...
Slopsquatting is a new supply chain threat where AI-assisted code generators recommend hallucinated packages that attackers register and weaponize.
socket.dev
April 16, 2025 at 2:36 PM