Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 22:44 UTC. Ordered by latest scan.
This is an automatic postinstall write to a foreign, behavior-bearing AI-agent control surface, with recursive overwrite semantics. That concrete install-time mutation meets the blocking...
The package performs unconsented postinstall mutation of both Codex and Claude user skill directories, plus user-level dependency installation. This is concrete install-hook abuse under t...
The automatic postinstall hook modifies global Cursor agent configuration and skills, rather than requiring an explicit user setup action. This meets the install-hook abuse boundary for a...
The package has a concrete automatic install-time chain that modifies both Codex and Claude user skill stores and deletes stale destination content. This meets the install-control-surface...