-= Per source details. Do not edit below this line.=-
In specific environments, the package triggers silent code execution during installation. The code to execute is not included in the package.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-05-foundry-utils
Reasons (based on the campaign):
dependency-confusion
other
{
"malicious-packages-origins": [
{
"versions": [
"0.3.0",
"0.3.1",
"0.3.2",
"0.3.3"
],
"source": "kam193",
"id": "pypi/2026-05-foundry-utils/foundry-utils",
"modified_time": "2026-05-18T20:23:55.082181Z",
"import_time": "2026-05-18T21:31:11.456920236Z",
"sha256": "9f62cf5a646cd39640b2be03720a6a2195dc4924813146e9a0d387bafa75c7de"
}
]
}