pypi

adminbypasser @2.0.1

Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 9:32 AM UTC

Malicious

OSV ID

MAL-2026-774

Ecosystem

pypi

Summary

Package silently downloads remote code and adds its execution to the autostart. During analysis, the remote domain no longer existed. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-02-old-adminbypasser Reasons (based on the campaign): - Downloads and executes a remote malicious script. - peristence-autorun

Source: kam193 (867991d0e6c74f15c2f231c002867172a4e03044a328676cf9b2ec07a7e48f68)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.