Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 07:14 UTC. Ordered by latest scan.
This is an unconsented postinstall mutation of a consumer project's broad AI-agent control surface. Guardrails against collisions and transitive instances do not establish user consent fo...
This is an unconsented install-time mutation of both consumer project files and AI-agent control surfaces, including automatic plugin installation and user-wide Codex changes. The behavio...
The automatic postinstall execution of an unverified native binary to install and modify Codex and Claude Code hooks is a concrete install-time AI-agent control-surface mutation. This mee...
The package performs an automatic postinstall installation of native code that mutates third-party AI-agent hook and configuration surfaces. This is concrete unconsented install-hook abus...