Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 18:40 UTC. Ordered by latest scan.
OpenSSF Malicious Packages via OSV confirms @viertechjs/wb@6.0.0-vier.3 as malicious (MAL-2026-15832): Malicious code in @viertechjs/wb (npm)
This is a concrete unconsented postinstall mutation of a consumer OpenCode control surface, coupled with remote vendor-controlled content application. Signature verification does not remo...
The automatic postinstall writes enabled agent-control configuration and a broad set of agent content into the consuming project. Existing-file conflict handling does not provide consent...
This is an unconsented install-time mutation of broad Claude and Codex command control surfaces, combined with persistent scheduled self-updating. The global-install guard does not make t...