pypi
Malicious pydoxing @8.9.2
Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 12:32 PM UTC
OSV ID
MAL-2025-4230
Ecosystem
pypi
Summary
Package contains a known Blank Grabber infostealer that starts on importing the module --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-05-pydoxing Reasons (based on the campaign): - infostealer - exfiltration-generic - obfuscation - exfiltration-browser-data - infostealer:blankgrabber
Source: kam193 (52e0861f6664f547a0cc13ab9b6aea123213946a49bbdc341e15be6ff6d53b61)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.