Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 16:15 UTC. Ordered by latest scan.
The automatic postinstall chain persistently alters multiple third-party AI-client configurations to launch this package. This meets the policy for unconsented broad AI-agent control-surf...
The automatic lifecycle chain executes an opaque native binary that installs external AI-agent hooks and changes Codex configuration. This is concrete unconsented install-hook abuse, rega...
The package uses an automatic lifecycle hook to globally install a separate AI-agent package, then retries the behavior at runtime. This meets the install-control-surface blocking boundar...
This is an unconsented postinstall mutation of a foreign AI-agent control surface. The source establishes concrete persistent configuration writes, so it meets the blocking policy despite...