Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 11:48 UTC. Ordered by latest scan.
The automatic postinstall hook mutates two unrelated, user-level AI-agent control surfaces. This meets the blocking policy for unconsented lifecycle configuration changes.
This is concrete install-hook abuse: an automatic postinstall downloads and persists opaque executable code that the package later runs. Same-source checksum validation does not bind the...
The automatic lifecycle hook downloads and installs remotely controlled executables, then runtime code executes one of them. This is a concrete remote-code-execution supply-chain path, no...
This is unconsented post-install mutation of third-party AI-agent control surfaces through an opaque native binary. The automatic, quiet execution meets the install-control-surface blocki...