Review AI-agent capability abuse and control hijacking, including changes to agent configuration, instructions, or permissions. These reports have OSV or public advisory evidence. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 08:48 UTC. Ordered by latest scan.
This is concrete install-time persistence across third-party AI-agent control surfaces, coupled to a preconfigured remote collection pipeline. Consent/redaction do not remediate the unaut...
This is concrete unconsented postinstall mutation of broad, foreign AI-agent control surfaces, combined with persistence and a preconfigured remote capture endpoint. The consent gate limi...
This is concrete unconsented postinstall mutation of broad AI-agent control surfaces coupled with persistence and remote egress. The later consent gate does not undo or precede the instal...
This is a concrete unconsented postinstall mutation of foreign AI-agent control surfaces, coupled to baked remote egress and transcript collection. Consent governs capture only after the...