pypi

network-utils-simple @1.3.8

Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 10:35 AM UTC

Malicious

OSV ID

MAL-2025-191803

Ecosystem

pypi

Summary

During installation, there is an attempt to download and execute code. The package has no real functionality. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-02-network-utils-simple Reasons (based on the campaign): - Downloads and executes a remote executable. - The package overrides the install command in setup.py to execute malicious code during installation.

Source: kam193 (1fd943d3243197ac153b2623548e62b4225a59f611cf13fe962bc3ced369a32d)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.