Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 09:17 UTC. Ordered by latest scan.
The package's automatic postinstall writes a package-controlled skill into the user's global Codex configuration. Although no exfiltration or network payload was found, this concrete inst...
This is an automatic postinstall mutation of foreign AI-agent control surfaces. The copied content promotes installation of the same package, making the behavior a concrete control-hijack...
This is an automatic postinstall mutation of foreign AI-agent control surfaces, coupled with instructions to route sensitive wallet and password actions through the package. The behavior...
This is an unconsented postinstall mutation of broad AI-agent control surfaces, including automatic command-hook registration. The absence of observed network exfiltration does not remove...