Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 00:10 UTC. Ordered by latest scan.
The automatic lifecycle mutation of a foreign, user-wide AI-agent control surface meets the blocking policy. The script is conditional on executables being present, but no consent gate li...
The automatic lifecycle hook mutates global Codex agent configuration and registers a remote MCP service. This meets the blocking policy for unconsented postinstall control-surface mutation.
The automatic post-install chain mutates foreign AI-agent configuration and installs executable lifecycle hooks without interactive consent. This is concrete install-hook abuse under the...
The automatic post-installation of external AI authentication tooling into the global environment is a concrete unconsented lifecycle mutation. The environment gates limit scope but do no...