MAL-2026-445

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/code-transfering-3/MAL-2026-445.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2026-445
Published
2026-01-21T20:21:24Z
Modified
2026-01-21T21:21:08.137145Z
Summary
Malicious code in code-transfering-3 (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Source: kam193 (949a505895a5dcb808074bcddc1a084d12cfadb4b999712b48e012ad455ce817)

Packages that might be part of testing for pentesting / malicious activity / joy, with suspicious activity that does not present any real harm.


Category: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research & co, with clearly low-harm possibilities.

Campaign: GENERIC-simple-tests

Reasons (based on the campaign):

  • The package overrides the install command in setup.py to execute malicious code during installation.
Database specific
{
    "malicious-packages-origins": [
        {
            "source": "kam193",
            "sha256": "949a505895a5dcb808074bcddc1a084d12cfadb4b999712b48e012ad455ce817",
            "versions": [
                "0.1"
            ],
            "import_time": "2026-01-21T21:11:28.82588029Z",
            "modified_time": "2026-01-21T20:21:24.495093Z",
            "id": "pypi/GENERIC-simple-tests/code-transfering-3"
        }
    ]
}
References
Credits

Affected packages

PyPI / code-transfering-3

Package

Name
code-transfering-3
View open source insights on deps.dev
Purl
pkg:pypi/code-transfering-3

Affected ranges

Affected versions

0.*

0.1

Database specific

source

"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/code-transfering-3/MAL-2026-445.json"