-= Per source details. Do not edit below this line.=-
Clone of the requests package that modified the code to send all get and post requests to a hardcoded URL
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-01-rqsts
Reasons (based on the campaign):
clones-real-package
dependency-confusion
action-hidden-in-lib-usage
{
"malicious-packages-origins": [
{
"id": "RLMA-2025-01233",
"modified_time": "2025-03-03T13:45:14Z",
"source": "reversing-labs",
"sha256": "461c1cabe5473baebc60d01c24a90d36a9cdce34d7bdedbf2c196fe390ad641c",
"versions": [
"2.28.1"
],
"import_time": "2025-03-03T15:07:16.865246188Z"
},
{
"id": "pypi/2025-01-rqsts/reques",
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
}
]
}
],
"modified_time": "2025-01-25T16:53:01Z",
"source": "kam193",
"sha256": "69fc18480a77f17458806ca2789c1dac4bd2a917b35d856946444f9e95485679",
"import_time": "2025-12-02T22:30:55.53412673Z"
},
{
"id": "pypi/2025-01-rqsts/reques",
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
}
]
}
],
"modified_time": "2025-01-25T16:53:01Z",
"source": "kam193",
"sha256": "7f1c117835fcc30eb4ff0ff5c9426d10011537b644ddea270fcdaba17ed7050e",
"import_time": "2025-12-02T23:07:18.57228925Z"
},
{
"id": "pypi/2025-01-rqsts/reques",
"modified_time": "2025-01-25T16:53:01Z",
"source": "kam193",
"sha256": "09d3c0352a1fb4c7c4a6b01046a94ed81f170bc45a5a5b1799301e82c1d8d295",
"versions": [
"2.28.1"
],
"import_time": "2025-12-10T21:38:57.780992609Z"
}
]
}