Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 08:27 UTC. Ordered by latest scan.
This is a concrete install-hook abuse chain: automatic lifecycle execution fetches or stages a native payload and launches it without integrity verification. The absence of direct credent...
The automatic postinstall chain writes consumer-project files and registers an MCP server in Cursor and Codex configuration. This is concrete install-hook abuse even though the inspected...
This is a concrete automatic install-hook download-and-execute chain, not merely a user-invoked CLI installer. The remote payload is mutable and lacks integrity verification.
The package performs privileged persistence and system software installation automatically from postinstall. This is concrete unconsented install-hook abuse, even though the visible watch...