Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 11:30 UTC. Ordered by latest scan.
This is a counterfeit Grok package with an automatic lifecycle hook that deploys a publisher-controlled executable and alters foreign AI CLI state. The lack of direct JavaScript exfiltrat...
This is an unconsented postinstall mutation of broad, foreign AI-agent control surfaces, including a machine-wide executable pre-tool hook. The absence of observed secret exfiltration doe...
The install-time hook silently makes broad global agent and shell changes, then injects mandatory conversation-logging instructions. This meets the policy for malicious install-hook abuse...
The automatic postinstall mutation of global AI-agent skill directories is a concrete unconsented control-surface write. Remote-fetched content makes that install-time mutation more severe.