Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 07:20 UTC. Ordered by latest scan.
The package performs automatic install-time transmission of an environment secret, while swallowing the validation errors that would make that transmission necessary for enforcement. The...
The package automatically exfiltrates an environment credential during preinstall. The absence of destructive behavior does not remove this concrete credential-disclosure risk.
The package performs automatic install-time transmission of an environment credential to a remote endpoint. No local writes or payload execution were found, but the credential exfiltratio...
The package performs concrete install-time transmission of an environment credential to a network endpoint. Static inspection found no compensating consent mechanism or need for this beha...