Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 20:25 UTC. Ordered by latest scan.
The automatic postinstall hook persistently mutates a foreign, broad AI-agent instruction surface. This meets the install-control-surface blocking policy regardless of the otherwise packa...
This is an unconsented install-time mutation of a foreign, user-global AI-agent control surface. Under the stated policy, that concrete behavior requires blocking publication.
The automatic lifecycle hook deploys remote, mutable code and changes a user-level Python environment without artifact verification. This is a concrete install-time supply-chain attack su...
The lifecycle hook performs unverified remote payload retrieval and broad user-environment package installation automatically. These actions create a concrete install-time code-execution...