Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 06:23 UTC. Ordered by latest scan.
This is a concrete unconsented postinstall mutation of a foreign AI-agent control surface. The interactive cloud setup does not mitigate that install-time behavior.
Source directly establishes a broad Claude Code hook/MCP persistence chain from npm postinstall. This meets the install-control-surface block boundary even without confirmed exfiltration.
This is an unconsented postinstall mutation of a foreign, broad AI-agent control surface. The source directly establishes persistence and execution triggers rather than merely exposing a...
源码确认了安装时对多个非本包拥有的 AI 工具用户配置的持久化修改,满足阻断条件。运行时还存在向默认远程 MCP 服务转发本地认证配置的具体链路。