Logo
pypi

tikweb@1.0.5

Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 3:44 PM UTC

Malicious

OSV ID

MAL-2025-47875

Ecosystem

pypi

Summary

This malicious package claims to interact with TikTok web features programmatically, but runs malicious obfuscated code upon import and via other modules.

Source: oracle-using-macaron (56e420aab6cf451bf10ab865d2950af02e45914f0a7618355f7ee8384ddcd858)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.