pypi
Maliciousprosocks@1.0.27
Vulnerability report · Last retrieved from osv.dev September 24, 2026 at 9:59 PM UTC
OSV ID
MAL-2026-17167
Ecosystem
pypi
Summary
The package automatically joins the machine to a proxy network. Depending on the version, it can happen during the package installation or when importing the module. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-09-prosocks Reasons (based on the campaign): - other - peristence-autorun - persistence
Source: kam193 (a1ca37b881f19975a8ab8b23bd5e69b51355333374385aabfc5784b69bf95545)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.