Investigate malicious npm packages and AI-agent policy findings. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision. Malware findings and policy violations are labelled separately.
Updated 11 Oct 2026, 02:26 UTC. Ordered by latest scan.
The automatic postinstall hook mutates Claude Code configuration and injects behavior-bearing instructions into the user's home directory. This meets the blocking policy for unconsented i...
The automatic postinstall performs persistent writes to the user's global Claude Code configuration and injects behavior-bearing instructions. This meets the install-control-surface block...
The automatic postinstall path mutates broad AI-agent configuration and installs executable hooks. This is concrete unconsented install-hook abuse under the stated policy.
OpenSSF Malicious Packages via OSV confirms discord-mfa-solver@1.0.2 as malicious (MAL-2026-16100): Malicious code in discord-mfa-solver (npm)