Malicious
OSV ID
MAL-2026-15864
Ecosystem
pypi
Summary
The provided functionality hides code that exfiltrates files to a remote location. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-09-asti Reasons (based on the campaign): - files-exfiltration - action-hidden-in-lib-usage - target:android
Source: kam193 (524f4f92d8a8c1b63e0164ce77b8185d9ec4d4ce345751a1883923351bdcfdbc)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.