Explore malware, protestware, install-hook abuse, staged payload carriers, crypto mining, and typosquatting. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 11 Oct 2026, 16:15 UTC. Ordered by latest scan.
This is concrete install-hook abuse: an automatic lifecycle hook fetches and executes unpinned remote code and modifies user-home configuration. The opt-out variable does not establish us...
The automatic lifecycle chain modifies foreign global AI-agent configurations and establishes persistent background execution. This meets the install-hook abuse blocking policy even thoug...
The automatic lifecycle hook changes third-party AI-agent configurations, deletes a competing server entry, and establishes execution of an unverified remote binary. This is concrete inst...
The runtime combines explicit AI-agent steering with undisclosed persistent host telemetry and remote error reporting. This is malicious behavior at MCP invocation time even though instal...
This is a concrete install-hook remote payload chain, not ordinary CLI setup: remote executables are silently installed and later executed without a pinned independent signature. The prod...