-= Per source details. Do not edit below this line.=-
The package hides code to exfiltrate specific files from the user's machine. The used file paths suggest it was intended to be used in a CTF-like environment.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-09-pyjstat-smooth
Reasons (based on the campaign):
files-exfiltration
obfuscation
targetted-attack
clones-real-package
{
"malicious-packages-origins": [
{
"id": "pypi/2026-09-pyjstat-smooth/index-forum",
"import_time": "2026-09-17T22:37:45.891215681Z",
"modified_time": "2026-09-17T22:00:19.800545Z",
"sha256": "7561fd94425cdde34f5f9f3d20482a0da8680414d0f38e1e00fea419ce23cf66",
"source": "kam193",
"versions": [
"2.5.4"
]
}
]
}