Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 03:39 UTC. Ordered by latest scan.
Automatic install-time host-identifier transmission to an external IP is a concrete data-exfiltration behavior. The duplicated import-time request reinforces that this is active behavior...
The package contains concrete, automatic install-hook data collection and transmission. Its loopback destination does not remove the unconsented collection behavior or the risk from a loc...
The automatic lifecycle hook gathers and transmits host identity data, while the package metadata explicitly frames the behavior as dependency confusion. This is concrete malicious instal...
The preinstall hook unconditionally harvests hostname and username and sends them over HTTP during install, with errors silenced, while presenting the package as @waves/icons. Self-descri...