Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 13:55 UTC. Ordered by latest scan.
The automatic lifecycle hook persistently grants PATH-resolved commands execution in Claude Code's global hook configuration. This is concrete install-time AI-agent control-surface hijack...
This is an unconsented install-time mutation of a foreign AI-agent control surface. The lifecycle trigger and global hook writes establish a concrete control-hijack attack surface.
This is an unconsented postinstall mutation of a foreign, broad AI-agent control surface. The conditional executable lookup does not remove the automatic persistent configuration change w...
This is an unconsented install-time mutation of a broad, foreign AI-agent control surface. The conditional executable check does not remove the persistence or broad event scope.