Malicious
OSV ID
MAL-2026-15927
Ecosystem
pypi
Summary
The provided functionality hides code that exfiltrates files to a remote location. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-09-asti Reasons (based on the campaign): - files-exfiltration - action-hidden-in-lib-usage - target:android
Source: kam193 (fb52479116026de0be08479d69a7e28915fc9add4b66ff31152b0a47dc256977)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.