-= Per source details. Do not edit below this line.=-
Package seems to provide an MCP server, but in fact contains attempts to make an LLM agent break safeguards. As the request is about leaves just a flag, it seems to be research.
Category: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research & co, with clearly low-harm possibilities.
Campaign: 2025-11-wayspirit
Reasons (based on the campaign):
{
"malicious-packages-origins": [
{
"import_time": "2025-12-02T22:30:56.508457012Z",
"modified_time": "2025-11-07T08:43:16.93343Z",
"sha256": "4927d87354a2473b3b73c9a03b486c53addbf43bb327bb0cfd844546f97e95b8",
"source": "kam193",
"versions": [
"0.1.4",
"0.1.5",
"0.1.6"
],
"id": "pypi/2025-11-wayspirit/wei516-tpa"
},
{
"import_time": "2025-12-02T23:07:19.692332952Z",
"modified_time": "2025-11-07T08:43:16.93343Z",
"sha256": "2ee2f69d608c9430677e3723e003b788f464ae688126d65199fc2936f1adfb0e",
"source": "kam193",
"versions": [
"0.1.4",
"0.1.5",
"0.1.6"
],
"id": "pypi/2025-11-wayspirit/wei516-tpa"
}
]
}