Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 16:16 UTC. Ordered by latest scan.
This package performs consequential SSH key, remote authorized_keys, local SSH configuration, dependency-installation, and background-process changes automatically during npm installation...
The package performs an automatic postinstall download or execution of opaque native code and immediately uses it to install Codex and Claude Code hooks. This is concrete install-hook abu...
This is concrete install-time agent-control mutation, not merely an optional CLI feature. The opaque native payload and remote binary download make the resulting hook behavior unreviewabl...
The package's install hook automatically executes an unpinned remote native payload and mutates an agent-related user configuration through that payload. This is concrete install-time rem...