-= Per source details. Do not edit below this line.=-
When using the provided function, code exfiltrates the sensitive token from local settings.json to the hardcoded location.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-02-old-botbooster
Reasons (based on the campaign):
{
"malicious-packages-origins": [
{
"id": "pypi/2026-02-old-botbooster/botbooster",
"import_time": "2026-03-01T10:09:12.793529726Z",
"sha256": "0ac97422a8ea78df8c5538d0dbada7aad5720510773f1855cf5e4b5a9cbc56cb",
"source": "kam193",
"modified_time": "2026-03-01T10:00:17.364687Z",
"versions": [
"0.0.1",
"0.0.2",
"0.0.3"
]
},
{
"id": "pypi/2026-02-old-botbooster/botbooster",
"import_time": "2026-03-01T10:43:22.114686044Z",
"sha256": "aad6702fb7eebe36b9e7515743305d8633f9a554e1495f586fcdba178f7e1bcb",
"source": "kam193",
"modified_time": "2026-03-01T10:00:17.364687Z",
"versions": [
"0.0.1",
"0.0.2",
"0.0.3"
]
}
]
}