Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 00:52 UTC. Ordered by latest scan.
The package combines automatic installation-time mutation of a consumer project with broad AI-agent control-surface writes and an instruction that suppresses review of those writes. This...
The package uses postinstall to replace and rewrite third-party installed dependencies and delete their source maps. This is a concrete install-hook abuse chain even though no separate ex...
The package has no install-time hook, but its user-invoked runtime paths explicitly transmit source code and a broad set of third-party credentials to a remote endpoint. This is concrete...
The package executes an opaque remotely supplied payload automatically on import through a detached background process. Although it has no install hook, this is concrete remote code execu...