Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 15:56 UTC. Ordered by latest scan.
The lifecycle hook performs concrete, unconsented destructive writes to Codex and Claude Code skill locations. This meets the install-time foreign/broad AI-agent control-surface mutation...
This meets the firewall block policy for an unconsented npm postinstall mutation of a foreign, global AI-agent control surface. The local-only copy and opt-out do not remove that install-...
The automatic postinstall path mutates Windows Terminal profiles used to launch Claude and Codex and creates elevated persistence. These actions occur without an explicit user setup command.
This is concrete unconsented postinstall persistence plus mutation of a foreign AI-agent control surface. The absence of observed remote exfiltration does not mitigate the lifecycle attac...