Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 19:47 UTC. Ordered by latest scan.
Source confirms the critical behavior rather than merely scanner hints: an automatic npm postinstall modifies global Claude configuration and injects a mutable MCP launch command. This me...
This is a concrete unconsented postinstall mutation of broad AI-agent control files in the consumer project. The templates appear design-system-oriented and no exfiltration was found, but...
Source inspection confirms unconsented postinstall mutation of broad, foreign AI-agent control surfaces, meeting the blocking policy. Guardrails around filesystem boundaries do not remove...
This is a concrete unconsented postinstall write to foreign project-root AI-agent instruction files. The absence of exfiltration does not remove the policy-defined control-hijack behavior.