-= Per source details. Do not edit below this line.=-
Distribution name abseil-py name-squats Google's widely-used absl-py (Abseil Python common libraries); the import name abseil_py also differs from the legitimate absl module. During bdist_wheel, setup.py walks the parent-process chain via psutil and matches process names against a hardcoded list of AI coding agent markers (claude-code, codex, cursor, gemini, grok, copilot, aider, opencode, qwen, amazon-q). On a match, _report() POSTs a JSON payload containing the package name, event, matched agent label, and timestamp to the hardcoded endpoint https://vero-research.com/ using urllib.request.urlopen with a spoofed browser User-Agent. The init prints a 'research study' disclaimer only after installation has already occurred and the beacon has fired. The behavior transmits information about the installer's environment (which AI coding tool triggered the install) to an author-controlled third-party endpoint without prior disclosure or opt-out.
Installing the package or importing the module exfiltrates basic information about the host, and the package has no other purpose.
Category: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research & co, with clearly low-harm possibilities.
Campaign: GENERIC-standard-pypi-install-pentest
Reasons (based on the campaign):
The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.
The package overrides the install command in setup.py to execute malicious code during installation.
{
"malicious-packages-origins": [
{
"id": "pypi/GENERIC-standard-pypi-install-pentest/abseil-py",
"import_time": "2026-07-16T21:24:49.864603121Z",
"modified_time": "2026-07-16T20:50:52.973621Z",
"sha256": "6b0ae8e92b62a5524d9ca665a07b3139a9cd4af2af0a0016dc6d425ecc2cc72e",
"source": "kam193",
"versions": [
"0.1.0"
]
},
{
"id": "IN-MAL-2026-012882",
"import_time": "2026-08-05T06:00:15.509693411Z",
"modified_time": "2026-08-05T05:02:51Z",
"sha256": "7087d90aa66c4de3fd4d92cd4f25088ea3ef20c78223a787768779ef5e1f0ac6",
"source": "amazon-inspector",
"versions": [
"0.1.0"
]
}
]
}[
{
"cweId": "CWE-506",
"description": "The product contains code that appears to be malicious in nature.",
"name": "Embedded Malicious Code"
}
]
{
"evidence_files": [
{
"path": "setup.py",
"sha256": "5bdbef11dd54b47371f1abe6fb6f6b0b6db9be31ee39d82b2e640a422ad4e532",
"tlsh": "5441c124e8016ce3e5835ca80836d5557aaafd539d01a435ffdc53185fc957ec0b60ae"
},
{
"path": "src/abseil_py/__init__.py",
"sha256": "11b51afcaf815daea26ce707fa4fe7888085bd31f59c87180fe6681c842b4aad",
"tlsh": "acd0950fab5007373550015a850a29500b2d00162bf035463ac7d079f31ae0d061e67d"
}
],
"package_integrity": [
{
"filename": "abseil_py-0.1.0.tar.gz",
"hashes": {
"blake2b_256": "6bf7210dd5822a9712a633d6ca41147a5a08f2feb078d3745624ee3ad5b78bee",
"md5": "e781016256dd1eb9e0a9b4afb179afb1",
"sha256": "87046b7e357e5cb25d366874d6d5ed4ff7c37b333a7fb721efb1d98424abc38d"
}
}
]
}
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/abseil-py/MAL-2026-10760.json"