Explore malware, protestware, install-hook abuse, staged payload carriers, crypto mining, and typosquatting. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 10 Oct 2026, 19:31 UTC. Ordered by latest scan.
This package uses postinstall to make unconsented, persistent changes to consumer AI-agent configuration and instructions, including an npx-backed MCP command. That is concrete install-ho...
The automatic lifecycle hook installs an unrelated AI agent globally based on local detection. This is an unconsented install-time mutation of a foreign, broad AI-agent control surface.
This package performs automatic postinstall writes to both Codex and Claude user skill directories and installs user-level dependencies. Those changes are persistent, cross-product, and o...
This is an unconsented automatic install-time takeover of broad consumer project files, reinforced by a plugin that restores overwritten entry points. The behavior exceeds package setup a...