Explore malware, protestware, install-hook abuse, staged payload carriers, crypto mining, and typosquatting. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 10 Oct 2026, 16:53 UTC. Ordered by latest scan.
This is not transparent package-aligned setup: automatic installation creates a persistent launcher and ships obfuscated code containing AI-agent control instructions. The embedded agent-...
The package has a concrete postinstall chain that writes package-controlled content into many unrelated AI-agent skill directories. This meets the policy for malicious install-hook abuse.
The package performs opaque third-party dependency mutation and source-map deletion automatically at install time. Although no confirmed exfiltration endpoint was found in the inspected f...
The package performs unconsented, privileged system mutation from an automatic lifecycle hook and repeats it at CLI startup. This is concrete install-hook abuse despite no confirmed secre...