Skip to content

Commit da60ca2

Browse files
author
github-actions
committed
Assign IDs
1 parent cbbb4a8 commit da60ca2

File tree

3 files changed

+11
-11
lines changed

3 files changed

+11
-11
lines changed

osv/malicious/.id-allocator

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
bdc5e9b5610d87f4272a6dbc6a130981aa1a3d4bf8cfe89c8729455d76794299
1+
bc94d38534adf8d8dac6b4f47882a904c7f638f9373d9098be86c6637655a2bd

osv/malicious/pypi/blank-lib/MAL-0000-kam193-96f1bcd77950a6cd.json renamed to osv/malicious/pypi/blank-lib/MAL-2025-192364.json

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,9 +2,9 @@
22
"modified": "2025-12-07T01:03:47Z",
33
"published": "2025-12-07T00:40:43Z",
44
"schema_version": "1.7.4",
5-
"id": "",
5+
"id": "MAL-2025-192364",
66
"summary": "Malicious code in blank-lib (PyPI)",
7-
"details": "This is an infostealer, based on Blank Grabber. It's used as dependency in other malicious packages\n\n\n---\n\nCategory: MALICIOUS - The campaign has clearly malicious intent, like infostealers.\n\n\nCampaign: 2025-12-blank-lib\n\n\nReasons (based on the campaign):\n\n\n - infostealer\n\n\n - infostealer:blankgrabber\n\n\n - clones-real-package\n\n\n - The malicious code is intentionally included in a dependency of the package\n\n\n - exfiltration-credentials\n\n",
7+
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: kam193 (96f1bcd77950a6cd42af11d0d4fb4ba3d58349cfde6236027341c044e152bfeb)\nThis is an infostealer, based on Blank Grabber. It's used as dependency in other malicious packages\n\n\n---\n\nCategory: MALICIOUS - The campaign has clearly malicious intent, like infostealers.\n\n\nCampaign: 2025-12-blank-lib\n\n\nReasons (based on the campaign):\n\n\n - infostealer\n\n\n - infostealer:blankgrabber\n\n\n - clones-real-package\n\n\n - The malicious code is intentionally included in a dependency of the package\n\n\n - exfiltration-credentials\n",
88
"affected": [
99
{
1010
"package": {
@@ -36,11 +36,11 @@
3636
"database_specific": {
3737
"malicious-packages-origins": [
3838
{
39-
"source": "kam193",
40-
"sha256": "96f1bcd77950a6cd42af11d0d4fb4ba3d58349cfde6236027341c044e152bfeb",
41-
"import_time": "2025-12-07T01:35:44.731111152Z",
4239
"id": "pypi/2025-12-blank-lib/blank-lib",
40+
"import_time": "2025-12-07T01:35:44.731111152Z",
4341
"modified_time": "2025-12-07T01:03:47.110526Z",
42+
"sha256": "96f1bcd77950a6cd42af11d0d4fb4ba3d58349cfde6236027341c044e152bfeb",
43+
"source": "kam193",
4444
"versions": [
4545
"0.0.8",
4646
"0.0.9"

osv/malicious/pypi/python-tg-bot/MAL-0000-kam193-5397ab6595b82371.json renamed to osv/malicious/pypi/python-tg-bot/MAL-2025-192365.json

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,9 +2,9 @@
22
"modified": "2025-12-07T00:50:39Z",
33
"published": "2025-12-07T00:50:39Z",
44
"schema_version": "1.7.4",
5-
"id": "",
5+
"id": "MAL-2025-192365",
66
"summary": "Malicious code in python-tg-bot (PyPI)",
7-
"details": "During importing, a dependency with infostealer is loaded and package attempts to exfiltrate credentials.\n\n\n---\n\nCategory: MALICIOUS - The campaign has clearly malicious intent, like infostealers.\n\n\nCampaign: 2025-12-blank-lib\n\n\nReasons (based on the campaign):\n\n\n - infostealer\n\n\n - infostealer:blankgrabber\n\n\n - clones-real-package\n\n\n - The malicious code is intentionally included in a dependency of the package\n\n\n - exfiltration-credentials\n\n",
7+
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: kam193 (5397ab6595b8237172e9a49952d092803e03526e3dda8277c64dc4d26ae45ff2)\nDuring importing, a dependency with infostealer is loaded and package attempts to exfiltrate credentials.\n\n\n---\n\nCategory: MALICIOUS - The campaign has clearly malicious intent, like infostealers.\n\n\nCampaign: 2025-12-blank-lib\n\n\nReasons (based on the campaign):\n\n\n - infostealer\n\n\n - infostealer:blankgrabber\n\n\n - clones-real-package\n\n\n - The malicious code is intentionally included in a dependency of the package\n\n\n - exfiltration-credentials\n",
88
"affected": [
99
{
1010
"package": {
@@ -36,11 +36,11 @@
3636
"database_specific": {
3737
"malicious-packages-origins": [
3838
{
39-
"source": "kam193",
40-
"sha256": "5397ab6595b8237172e9a49952d092803e03526e3dda8277c64dc4d26ae45ff2",
41-
"import_time": "2025-12-07T01:35:44.733391151Z",
4239
"id": "pypi/2025-12-blank-lib/python-tg-bot",
40+
"import_time": "2025-12-07T01:35:44.733391151Z",
4341
"modified_time": "2025-12-07T00:50:39.178299Z",
42+
"sha256": "5397ab6595b8237172e9a49952d092803e03526e3dda8277c64dc4d26ae45ff2",
43+
"source": "kam193",
4444
"versions": [
4545
"22.5.1",
4646
"22.5"

0 commit comments

Comments
 (0)