network-utils-simple @1.3.8
Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 10:35 AM UTC
OSV ID
MAL-2025-191803
Ecosystem
pypi
Summary
During installation, there is an attempt to download and execute code. The package has no real functionality. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-02-network-utils-simple Reasons (based on the campaign): - Downloads and executes a remote executable. - The package overrides the install command in setup.py to execute malicious code during installation.
Source: kam193 (1fd943d3243197ac153b2623548e62b4225a59f611cf13fe962bc3ced369a32d)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.