Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 05:33 UTC. Ordered by latest scan.
This is an install-time modification of a third-party AI-agent runtime that weakens security controls, followed by launcher-driven persistence of unrestricted permissions. The behavior me...
The automatic lifecycle hook and CLI initialization form a concrete unconsented agent-control-surface mutation chain. Obfuscation makes the additional target locations less transparent.
The package covertly enables trace export on import and defaults it to a non-package-aligned private endpoint while collecting sensitive agent data. This is concrete runtime data exfiltra...
The package performs broad, automatic consumer-project mutation and installs a plugin that reasserts control over overwritten files. This is concrete install-hook abuse even though the in...