pypi · Malicious package advisory
Malwarefinal-osint
MAL-2025-48891
Malicious code in final-osint (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (e4fd0b958714b427b2b2c39e7afd8134f71fae10467ce32d52cffeb74ec716c2) Importing the module starts an infostealer exfiltrating e.g. browser data --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-09-final-osint Reasons (based on the campaign): - infostealer - exfiltration-browser-data - exfiltration-crypto
Compromised versions (1)
- 2.0.0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.