-= Per source details. Do not edit below this line.=-
Typosqatting package collecting, but not exfiltrating (thus fulfiling the educational promise), sensitive data
Category: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research & co, with clearly low-harm possibilities.
Campaign: 2025-09-matplotliv
Reasons (based on the campaign):
{
"malicious-packages-origins": [
{
"id": "pypi/2025-09-matplotliv/matplotliv",
"import_time": "2025-12-02T22:30:56.202460277Z",
"source": "kam193",
"versions": [
"0.1.0"
],
"modified_time": "2025-09-26T23:07:06.777625Z",
"sha256": "6b3f06d28b98caec89b92e9d51032bad69993a62a73802a54fedc14d77f5f535"
},
{
"id": "pypi/2025-09-matplotliv/matplotliv",
"import_time": "2025-12-02T23:07:19.384314099Z",
"source": "kam193",
"versions": [
"0.1.0"
],
"modified_time": "2025-09-26T23:07:06.777625Z",
"sha256": "491ff5ae8247837ff9be18d46366f453395dab2413f44f6251aff0b271f7d25b"
}
]
}