Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 05:04 UTC. Ordered by latest scan.
This is a concrete unconsented postinstall mutation of foreign AI-agent control surfaces (.kiro and .cursor). The absence of exfiltration does not remove that install-time control-surface...
Source inspection confirms an install-time write to `.kiro/steering` and `.cursor/rules`; this meets the policy's concrete foreign AI-agent control-surface mutation boundary. No separate...
The package performs concrete, unconsented postinstall mutation of multiple foreign AI-agent control surfaces. This meets the blocking policy regardless of the absence of observed exfiltr...
Source confirms the prohibited chain directly: npm postinstall invokes a non-interactive bootstrap that writes cross-vendor AI-agent controls in the consuming project. No exfiltration is...