Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 23:51 UTC. Ordered by latest scan.
Postinstall automatically executes a native binary with --install-agent-hooks, and the package says that writes Codex and Claude Code hooks, skills, and Codex update settings. That is unc...
The package has a concrete automatic postinstall chain that executes an opaque native hook installer against Codex and Claude Code configuration. This meets the install-time AI-agent cont...
This is an unconsented install-time mutation of foreign AI-agent control surfaces combined with remote executable loading and broad host changes. The global-install gate and opt-outs do n...
The package has a concrete automatic postinstall chain that modifies multiple third-party AI-agent skills directories and changes future agent routing. This meets the install-control-surf...