Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 13:25 UTC. Ordered by latest scan.
The source establishes a concrete postinstall chain that persists package-controlled instructions and lifecycle execution in global agent configuration. This meets the block policy for un...
Concrete install-time mutation of both Claude Code and Codex global MCP configuration meets the block policy for unconsented foreign/broad AI-agent control-surface writes.
The source confirms a concrete npm postinstall chain that writes and merges package-controlled content into broad external AI-agent control surfaces. This meets the blocking policy regard...
This is a concrete unconsented postinstall mutation of broad, foreign AI-agent control surfaces, including automatic approval and tool interception. No network exfiltration is needed for...