-= Per source details. Do not edit below this line.=-
Package exfiltrates screenshots and network information to a hardcoded target.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-05-crayrandomiz
Reasons (based on the campaign):
spyware-like
exfiltration-generic
obfuscation
{
"malicious-packages-origins": [
{
"modified_time": "2026-05-07T18:43:03.433769Z",
"versions": [
"1.0.0",
"1.0.1",
"2.0.0"
],
"sha256": "70d147758fe5288bee2adc712e45b7836211b83ce0b209fd42a31e4b3696bbf2",
"id": "pypi/2026-05-crayrandomiz/crayrandomiz",
"source": "kam193",
"import_time": "2026-05-07T19:07:14.482904604Z"
},
{
"modified_time": "2026-05-07T18:43:03.433769Z",
"versions": [
"1.0.0",
"1.0.1",
"2.0.0"
],
"sha256": "a02f8c548a8b98554453e11fe917d096b013457d10602db42b791f0dca62deed",
"id": "pypi/2026-05-crayrandomiz/crayrandomiz",
"source": "kam193",
"import_time": "2026-05-08T08:37:58.661860223Z"
}
]
}