pypi

pyutiltool @3.5

Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 9:32 AM UTC

Malicious

OSV ID

MAL-2024-11686

Ecosystem

pypi

Summary

When importing the module and a specific file exists in the current directory, obfuscated code downloads and starts the next stage of obfuscated code (cstealer infostealer) --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-10-pyutiltool Reasons (based on the campaign): - infostealer - obfuscation - infostealer:cstealer

Source: kam193 (33b1b5a9f2482626b8ff1dc21fbf8da61082231e20f1b87060ab133957ce634f)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.