-= Per source details. Do not edit below this line.=-
Package is just calling home and there is no other purpose
Category: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research & co, with clearly low-harm possibilities.
Campaign: 2025-09-unicore
Reasons (based on the campaign):
{
"iocs": {
"urls": [
"https://gauss-security.com/poca.php"
]
},
"malicious-packages-origins": [
{
"source": "kam193",
"id": "pypi/2025-09-unicore/onnxruntime-winml",
"modified_time": "2025-09-07T21:36:19.790879Z",
"sha256": "8178646ec255c40e5ba22f0b484af0909c4ba3c42f025a98dd22956cadecec91",
"versions": [
"1.0.0"
],
"import_time": "2025-12-02T22:30:56.270681174Z"
},
{
"source": "kam193",
"id": "pypi/2025-09-unicore/onnxruntime-winml",
"modified_time": "2025-09-07T21:36:19.790879Z",
"sha256": "5566aa4ecc644b36e90902092563c05e1852d751381539398f2307ae1fbefae6",
"versions": [
"1.0.0"
],
"import_time": "2025-12-02T23:07:19.456608913Z"
}
]
}