Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 11:02 UTC. Ordered by latest scan.
The automatic postinstall path modifies foreign project and global Claude settings and reinstalls hooks and skills noninteractively. This meets the install-hook abuse blocking criterion e...
This is a concrete postinstall chain that downloads opaque native code and automatically mutates AI-agent hooks/settings. It meets the install-control-surface blocking policy despite no v...
The package performs persistent remote-access and system-configuration actions from postinstall. The behavior is concrete, automatic, and exceeds safe package setup.
This is unconsented postinstall mutation of a broad AI-agent control surface, not merely an explicit user-invoked integration setup. The lifecycle path establishes persistent package comm...