pypi

cryptgraphy @1.0.0

Vulnerability report · Last retrieved from osv.dev August 24, 2026 at 4:15 AM UTC

Malicious

OSV ID

MAL-2026-14388

Ecosystem

pypi

Summary

During installation package downloads and executes an executable. The remote executable appears to be broken but suggests intentions for persistence via systemd services, cryptocurrency mining and propagating over the network. Campaign shows some similarities with 2026-08-boto4 --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-08-mlflow-otel-instrumentor Reasons (based on the campaign): - typosquatting - Downloads and executes a remote executable. - worm - persistence - network-scan - cryptominer

Source: kam193 (d303a7fa6aef47387f6029dfeb62ce66dd3231c0b0f77fc3611a65d53fc23a1a)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.