Skip to content

Commit 8b1c7a9

Browse files
author
github-actions
committed
Assign IDs
1 parent 75cd9e7 commit 8b1c7a9

File tree

4 files changed

+19
-19
lines changed

4 files changed

+19
-19
lines changed

osv/malicious/.id-allocator

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
7f23d3c18d0764dabdbad9027334769511cd25037be2c8201b048dcc002b2c5d
1+
ed002fa96fa9f8cc6295e87332150666f46b6a93a767e21173d806f68eed4443

osv/malicious/pypi/auth0-ai-ms-agent/MAL-0000-kam193-2e341dbac5b5fcd3.json renamed to osv/malicious/pypi/auth0-ai-ms-agent/MAL-2026-2184.json

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -2,9 +2,9 @@
22
"modified": "2026-03-25T06:52:53Z",
33
"published": "2026-03-25T06:52:53Z",
44
"schema_version": "1.7.4",
5-
"id": "",
6-
"summary": "Pentesting or research code in auth0-ai-ms-agent (PyPI)",
7-
"details": "Installing the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research \u0026 co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n\n",
5+
"id": "MAL-2026-2184",
6+
"summary": "Malicious code in auth0-ai-ms-agent (PyPI)",
7+
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: kam193 (2e341dbac5b5fcd3b5a882b5ee47e26051b72bacd4d552790c684174ba0e69ae)\nInstalling the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research \u0026 co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n",
88
"affected": [
99
{
1010
"package": {
@@ -35,11 +35,11 @@
3535
"database_specific": {
3636
"malicious-packages-origins": [
3737
{
38-
"source": "kam193",
39-
"sha256": "2e341dbac5b5fcd3b5a882b5ee47e26051b72bacd4d552790c684174ba0e69ae",
40-
"import_time": "2026-03-25T07:27:13.652703718Z",
4138
"id": "pypi/GENERIC-standard-pypi-install-pentest/auth0-ai-ms-agent",
39+
"import_time": "2026-03-25T07:27:13.652703718Z",
4240
"modified_time": "2026-03-25T06:52:53.539783Z",
41+
"sha256": "2e341dbac5b5fcd3b5a882b5ee47e26051b72bacd4d552790c684174ba0e69ae",
42+
"source": "kam193",
4343
"versions": [
4444
"0.1.0"
4545
]

osv/malicious/pypi/hy-api-utilities/MAL-0000-kam193-e47cae7d998d465d.json renamed to osv/malicious/pypi/hy-api-utilities/MAL-2026-2185.json

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -2,9 +2,9 @@
22
"modified": "2026-03-25T06:54:07Z",
33
"published": "2026-03-25T06:54:07Z",
44
"schema_version": "1.7.4",
5-
"id": "",
6-
"summary": "Pentesting or research code in hy-api-utilities (PyPI)",
7-
"details": "Installing the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research \u0026 co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n\n",
5+
"id": "MAL-2026-2185",
6+
"summary": "Malicious code in hy-api-utilities (PyPI)",
7+
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: kam193 (e47cae7d998d465d8ad1e4944051a42ee3cbf939476004154800628a94b828f3)\nInstalling the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research \u0026 co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n",
88
"affected": [
99
{
1010
"package": {
@@ -35,11 +35,11 @@
3535
"database_specific": {
3636
"malicious-packages-origins": [
3737
{
38-
"source": "kam193",
39-
"sha256": "e47cae7d998d465d8ad1e4944051a42ee3cbf939476004154800628a94b828f3",
40-
"import_time": "2026-03-25T07:27:13.653813608Z",
4138
"id": "pypi/GENERIC-standard-pypi-install-pentest/hy-api-utilities",
39+
"import_time": "2026-03-25T07:27:13.653813608Z",
4240
"modified_time": "2026-03-25T06:54:07.96589Z",
41+
"sha256": "e47cae7d998d465d8ad1e4944051a42ee3cbf939476004154800628a94b828f3",
42+
"source": "kam193",
4343
"versions": [
4444
"0.2.10"
4545
]

osv/malicious/pypi/vision-service-python-client/MAL-0000-kam193-faa725015cfe04b4.json renamed to osv/malicious/pypi/vision-service-python-client/MAL-2026-2186.json

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -2,9 +2,9 @@
22
"modified": "2026-03-25T06:56:22Z",
33
"published": "2026-03-25T06:56:22Z",
44
"schema_version": "1.7.4",
5-
"id": "",
6-
"summary": "Pentesting or research code in vision-service-python-client (PyPI)",
7-
"details": "Installing the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research \u0026 co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n\n",
5+
"id": "MAL-2026-2186",
6+
"summary": "Malicious code in vision-service-python-client (PyPI)",
7+
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: kam193 (faa725015cfe04b49bbcf9f472d21a77993c7ca9692ad2b0912e9bd3d2554669)\nInstalling the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research \u0026 co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n",
88
"affected": [
99
{
1010
"package": {
@@ -35,11 +35,11 @@
3535
"database_specific": {
3636
"malicious-packages-origins": [
3737
{
38-
"source": "kam193",
39-
"sha256": "faa725015cfe04b49bbcf9f472d21a77993c7ca9692ad2b0912e9bd3d2554669",
40-
"import_time": "2026-03-25T07:27:13.654445494Z",
4138
"id": "pypi/GENERIC-standard-pypi-install-pentest/vision-service-python-client",
39+
"import_time": "2026-03-25T07:27:13.654445494Z",
4240
"modified_time": "2026-03-25T06:56:22.910344Z",
41+
"sha256": "faa725015cfe04b49bbcf9f472d21a77993c7ca9692ad2b0912e9bd3d2554669",
42+
"source": "kam193",
4343
"versions": [
4444
"0.3.61"
4545
]

0 commit comments

Comments
 (0)