exflibrary @1.11
Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 12:32 PM UTC
OSV ID
MAL-2024-11584
Ecosystem
pypi
Summary
When importing the module and a specific file exists in the current directory, obfuscated code downloads and starts the next stage of obfuscated code (cstealer infostealer) --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-10-pyutiltool Reasons (based on the campaign): - infostealer - obfuscation - infostealer:cstealer
Source: kam193 (95deb938eb8fd38976a38faf2fd2117318966fc829c080f35d6d999ff37d1236)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.