pypi
Malicious final-osint @2.0.0
Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 5:37 PM UTC
OSV ID
MAL-2025-48891
Ecosystem
pypi
Summary
Importing the module starts an infostealer exfiltrating e.g. browser data --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-09-final-osint Reasons (based on the campaign): - infostealer - exfiltration-browser-data - exfiltration-crypto
Source: kam193 (e4fd0b958714b427b2b2c39e7afd8134f71fae10467ce32d52cffeb74ec716c2)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.