Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 11:49 UTC. Ordered by latest scan.
Source establishes unconsented postinstall mutation of a foreign agent's global executable configuration, meeting the explicit blocking policy. Availability checks and package-aligned fun...
Source proves unconsented npm postinstall mutation of a foreign, global AI-agent control surface, meeting the blocking policy. CLI availability checks do not establish prior consent, and...
Source establishes unconsented npm postinstall mutation of a foreign global AI-agent control surface. The installation guards limit activation but do not provide consent for the automatic...
Source establishes unconsented postinstall mutation of a foreign, global AI-agent control surface. This meets the blocking policy independently of scanner similarity labels or citation li...