Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 04:33 UTC. Ordered by latest scan.
This is a concrete credential-collection and transmission chain to a hard-coded raw-IP endpoint with TLS verification disabled. The lack of an npm lifecycle hook limits installation risk...
This package performs automatic postinstall mutation of foreign AI-agent control surfaces and installs additional user-level dependencies. That meets the install-hook abuse blocking crite...
This is a concrete remote payload-execution chain that forwards sensitive values to remotely selected code. The lack of an install hook does not mitigate the explicit runtime attack surface.
The declared runtime entrypoint directly invokes an obfuscated remote-binary downloader and process launcher. The absence of a lifecycle script limits the install-time trigger but does no...