-= Per source details. Do not edit below this line.=-
Using the provided function results in exfiltrating the current running file (likely the user's script) to the hardcoded location.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-02-old-randomstringgen
Reasons (based on the campaign):
files-exfiltration
action-hidden-in-lib-usage
{
"malicious-packages-origins": [
{
"source": "kam193",
"sha256": "9fc95ea566ad1938f7f75123eee2d8b3365bf55f06d7aa8a5f569f5e4c696132",
"versions": [
"0.1",
"0.2",
"0.3",
"0.4"
],
"import_time": "2026-02-28T17:07:19.736156916Z",
"modified_time": "2026-02-28T16:48:52.494163Z",
"id": "pypi/2026-02-old-randomstringgen/randomstringgen"
}
]
}