-= Per source details. Do not edit below this line.=-
This is an infostealer, based on Blank Grabber. It's used as dependency in other malicious packages
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-12-blank-lib
Reasons (based on the campaign):
infostealer
infostealer:blankgrabber
clones-real-package
The malicious code is intentionally included in a dependency of the package
exfiltration-credentials
{
"malicious-packages-origins": [
{
"import_time": "2025-12-07T01:35:44.731111152Z",
"source": "kam193",
"sha256": "96f1bcd77950a6cd42af11d0d4fb4ba3d58349cfde6236027341c044e152bfeb",
"id": "pypi/2025-12-blank-lib/blank-lib",
"versions": [
"0.0.8",
"0.0.9"
],
"modified_time": "2025-12-07T01:03:47.110526Z"
},
{
"import_time": "2025-12-07T02:44:26.100863193Z",
"source": "kam193",
"sha256": "b0f1560379fabce56cf4ff03d12317400dd419a744927ff319fa4275f9e25367",
"id": "pypi/2025-12-blank-lib/blank-lib",
"versions": [
"0.0.8",
"0.0.9",
"0.1.0"
],
"modified_time": "2025-12-07T01:17:48.66619Z"
}
]
}