Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 23:36 UTC. Ordered by latest scan.
This is a concrete automatic postinstall mutation of broad, foreign Codex and Claude agent configuration surfaces. The documented notice does not convert lifecycle execution into explicit...
This is an unconsented postinstall mutation of global AI-agent control surfaces, including destructive pruning of prior content. The behavior meets the install-hook abuse blocking boundar...
The automatic lifecycle hook modifies both Codex and Claude user-level skill surfaces and prunes their contents. That concrete behavior meets the install-control-surface blocking policy e...
The postinstall hook persistently writes package-authored instructions into shared Codex and Claude directories. That concrete cross-agent control-surface mutation warrants blocking even...