News
Researchers Found 227 Install Commands Pointing at Unowned Packages Across 6,214 Corporate Domains
A study published August 27 scanned 6,214 live domains belonging to defense contractors, Fortune 500s and Big Tech and found 227 install commands in llms.txt and llms-full.txt documentation files that resolve to package names nobody owns. Claude, OpenAI's Codex and Nous Research's Hermes each executed those commands when reading the docs, and the researchers confirmed a few dozen companies, some Fortune 500, actually installed proof-of-concept code inside their networks. This turns slopsquatting from a hallucination problem into a documentation-supply-chain problem: the agent-readable file you publish for discoverability is now an execution surface, and anyone can register the dangling name.
Source
↳ Follow the thread