Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 8 Oct 2026, 14:34 UTC. Ordered by latest scan.
Source establishes unconsented postinstall mutation of a foreign, global AI-agent control surface. This meets the blocking policy independently of scanner similarity labels or citation li...
Source establishes unconsented postinstall mutation of a foreign global AI-agent control surface, meeting the blocking policy. The executable consent checks do not support treating this a...
Inspected source establishes unconsented postinstall mutation of a broad AI-agent control surface, including overwrite and deletion of existing consumer files. This meets the blocking pol...
Inspected source establishes automatic, unconsented postinstall mutation of a broad foreign AI-agent control surface. This meets the blocking policy even though the installed commands are...