pypi

audio-separator-fork @0.8.11

Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 11:32 AM UTC

Malicious

OSV ID

MAL-2024-9947

Ecosystem

pypi

Summary

Clones real package and hoddens an obfuscated code trying to run remote scripts as well as establish backdoor through SSH. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-08-fireindahole.fun Reasons (based on the campaign): - backdoor - action-hidden-in-lib-usage - clones-real-package - obfuscation - dependency-confusion

Source: kam193 (c2fdb66a75c58bc11250d088e141d39a4d2bbf8be018db9bb0ca9fd219d7e257)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.