Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 13:25 UTC. Ordered by latest scan.
Direct source inspection confirms an install-time write to global Claude Code hooks, not merely a scanner signature. The PATH guard limits exposure but does not make the unconsented broad...
The lifecycle hook performs automatic, persistent consumer-repository AI-agent control-surface mutation. This meets the firewall block boundary regardless of the apparent developer-toolin...
The source establishes an unconsented postinstall chain that installs a foreign AI-agent CLI globally and persists user-environment changes. This meets the blocking boundary for install-t...
The package performs unconsented postinstall mutation of foreign, global AI-agent control surfaces. This meets the blocking policy regardless of the scanner's similarity labels.