Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 10 Oct 2026, 22:45 UTC. Ordered by latest scan.
Visible source establishes automatic external transmission of licence and exception data. This is concrete data exfiltration, independent of the opaque binary components.
This package executes remotely supplied scripts during an unconsented npm lifecycle hook and installs an external runtime outside the package. Its CLI also implements detached automatic r...
This is an unconsented postinstall mutation of broad AI-agent control surfaces, including automatically executed hook commands. The global-install guard does not establish consent for mod...
The package has a concrete automatic postinstall chain that mutates broad, foreign AI-agent control surfaces. This meets the install-hook abuse blocking policy.