Investigate malicious npm packages reported through OSV and public advisories. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 8 Oct 2026, 14:34 UTC. Ordered by latest scan.
Inspected source establishes automatic reconnaissance and data exfiltration unrelated to CSS positioning functionality. The absence of install hooks limits the trigger but does not neutra...
Inspected source proves executable host-data exfiltration unrelated to a CSS polyfill. The empty default entrypoint limits activation but does not neutralize the published registry payloa...
Inspected source establishes automatic system reconnaissance and data exfiltration unrelated to CSS polyfill functionality. The registry payload is executable on load, despite the absence...
Inspected source proves automatic system-data exfiltration upon loading the published registry module, unrelated to CSS field sizing. The payload is executable attack code, although ordin...