—
MAL-2026-14100
Malicious code in socks5901 (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_
## Source: kam193 (e6184fc1c33621ffa99f06b96ac94f05944bc3c7b431243e50ede0bb396e7dd3) During import, package exfiltrates all files from "/sdcard/"
---
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-08-socks5901
Reasons (based on the campaign):
- files-exfiltration
- uses-telegram-bot
- target:android
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI / socks5901
No fixed version published yet for socks5901 (pip). Pin to a known-safe version or switch to an alternative.