Malicious
OSV ID
MAL-2025-191834
Ecosystem
pypi
Summary
File is designed to download, hide under system-like name, and run a remote executable, widely identified as malicious. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-05-pyiniter Reasons (based on the campaign): - infostealer - Downloads and executes a remote executable.
Source: kam193 (7ed8f43159750189f4cea17185b5ee087dda83db8574bf258010068c524fc723)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.