Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 12:00 UTC. Ordered by latest scan.
index.js is an import-time scrape-and-post payload that copies .flag-value from /profile to /addPost, which does not match a feed widget helper. That is concrete data theft even though th...
index.js is a load-time same-origin thief: it scrapes .flag-value from /profile and POSTs it to /addPost with no user API. That is a complete data-theft chain, not a documented widget.
OpenSSF Malicious Packages via OSV confirms kartyk-github-oidc-test-pkg@1.0.4 as malicious (MAL-2026-16244): Malicious code in kartyk-github-oidc-test-pkg (npm)
OpenSSF Malicious Packages via OSV confirms kartyk-github-token-pkg@1.0.4 as malicious (MAL-2026-16246): Malicious code in kartyk-github-token-pkg (npm)