Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 19:44 UTC. Ordered by latest scan.
The automatic postinstall hook mutates several foreign, user-wide agent skill directories and enables implicit package-authored behavior. The remote native-app installation further increa...
This is a concrete remote-control and data-exfiltration chain, not a normal local plugin setup. The lack of npm lifecycle hooks does not mitigate the automatic runtime connection and priv...
The package performs automatic postinstall mutation of the consumer project's package-manager configuration and multiple AI-agent control surfaces. The combined lifecycle hook, broad writ...
OpenSSF Malicious Packages via OSV confirms bnotify-web-sdk@1.1.9 as malicious (MAL-2026-14551): Malicious code in bnotify-web-sdk (npm)