reguestsc @2.34.2
Vulnerability report · Last retrieved from osv.dev July 31, 2026 at 1:41 PM UTC
OSV ID
MAL-2026-11413
Ecosystem
pypi
Summary
Clones of a legitimate library with injected code downloading and executing a malicious executable on import. Dynamic analysis identified it as salatstealer. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-07-reguestsc Reasons (based on the campaign): - typosquatting - Downloads and executes a remote executable. - malware - clones-real-package - spyware-like - infostealer
Source: kam193 (20e4ae2ce79408a65e9b4bb348c2d69e20eb6072e3641531e2ec5773f1bbddd6)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.