MAL-2026-3398

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/ninja-ssh-proto/MAL-2026-3398.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2026-3398
Published
2026-05-08T15:45:53Z
Modified
2026-05-09T17:35:31.195141Z
Summary
Malicious code in ninja-ssh-proto (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Source: kam193 (84f71e430b37d8fe0ee6c72826071159bb146664fe17d9a596f6e611579851f7)

During installation or import, package silently adds a new authorized SSH key. It's closely related to the 2026-05-ninja-core-utils campaign, but there is no built-in crypto exfiltration.


Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-05-ninja-ssh-proto

Reasons (based on the campaign):

  • backdoor

  • obfuscation

Database specific
{
    "iocs": {
        "urls": [
            "http://144.126.142.148:5555/report"
        ]
    },
    "malicious-packages-origins": [
        {
            "id": "pypi/2026-05-ninja-ssh-proto/ninja-ssh-proto",
            "sha256": "31cd1b434d9ff5d9acc1dc1b668bae0aebff2a063dd30234f8b2294c1aba0f8e",
            "import_time": "2026-05-08T16:36:11.159735942Z",
            "source": "kam193",
            "modified_time": "2026-05-08T15:45:53.374752Z",
            "versions": [
                "1.0.2",
                "1.0.4"
            ]
        },
        {
            "id": "pypi/2026-05-ninja-ssh-proto/ninja-ssh-proto",
            "sha256": "84f71e430b37d8fe0ee6c72826071159bb146664fe17d9a596f6e611579851f7",
            "import_time": "2026-05-09T17:23:17.195786299Z",
            "source": "kam193",
            "modified_time": "2026-05-08T15:45:53.374752Z",
            "versions": [
                "1.0.2",
                "1.0.4"
            ]
        }
    ]
}
References
Credits

Affected packages

PyPI / ninja-ssh-proto

Package

Affected ranges

Affected versions

1.*
1.0.2
1.0.4

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/ninja-ssh-proto/MAL-2026-3398.json"