Explore malware, protestware, install-hook abuse, staged payload carriers, crypto mining, and typosquatting. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 10 Oct 2026, 18:04 UTC. Ordered by latest scan.
This is an automatic install-hook persistence chain with credential-accessing runtime behavior. The package mutates the user's agent execution environment and starts a long-running servic...
The install lifecycle automatically mutates foreign AI-agent hook surfaces, including Claude paths, through a nested package CLI invocation. The guards narrow when it occurs but do not pr...
This package has a concrete install-time remote payload execution path. The same-origin checksum check does not constrain a compromised or substituted release response, so the automatic p...
The lifecycle hook establishes automatic persistence in a shared AI-agent directory and changes its configuration. Although no postinstall exfiltration was found, the concrete control-sur...