Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 18:07 UTC. Ordered by latest scan.
This is a concrete, automatic postinstall path that executes a remote binary and installs skills into detected AI agents without an explicit user command. Hash verification does not make...
This is an automatic install-hook remote-code-execution chain, not a transparent bundled installer. The local skip guards do not mitigate execution of mutable remote code during the opted...
The package has a concrete automatic install-time chain that modifies a consumer project and activates multiple AI-agent integrations. This meets the install-hook abuse policy even though...
The automatic lifecycle hook modifies several unrelated global AI-agent instruction directories and accepts mutable remote instruction content. This is a concrete install-hook control-sur...