Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 9 Oct 2026, 23:24 UTC. Ordered by latest scan.
The package has a concrete automatic postinstall chain that mutates foreign and broad AI-agent control surfaces. This meets the install-hook abuse blocking policy despite no observed netw...
The package performs broad, automatic mutations of a consumer project and installs a plugin that continually restores package-controlled source. This concrete install-hook persistence war...
The automatic lifecycle hook stages a mutable, unverified remote executable and alters the user's Python environment. The CLI explicitly executes the staged binary, creating a concrete re...
This package contains an enabled default external logging receiver that transmits runtime data, including supplied scan codes, to embedded webhook URLs. The absence of an install hook doe...