Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 18:03 UTC. Ordered by latest scan.
The install hook automatically and silently modifies both Claude and Codex global configuration, registering executable package code. This meets the blocking policy for unconsented lifecy...
The automatic lifecycle hook mutates foreign, broad AI-agent configuration files and installs a package-controlled MCP server without consent. This meets the install-control-surface block...
The package performs unconsented postinstall mutation of global Pi-agent settings and global Maestro workflow locations. No exfiltration was found in the inspected installer scripts, but...
The automatic postinstall hook performs broad, unconsented mutation of foreign AI-agent configuration surfaces. This meets the install-control-surface block policy even though no credenti...