Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 16:52 UTC. Ordered by latest scan.
This is a concrete remote-code-execution path in the embedding browser, not merely a network request. Although it has no install hook or local secret harvesting, executing opaque provider...
The package performs unconsented postinstall mutation of user-level AI-agent configuration and installs a future-session command hook. This is a concrete install-hook abuse path even thou...
This is an automatic postinstall mutation of a foreign, machine-wide AI-agent configuration, which the policy requires blocking. The lack of network or credential theft does not remove th...
This is an unconsented postinstall mutation of broad third-party AI-agent control surfaces through an opaque native executable. The installer also accepts remotely downloaded executable c...