VDB
Sign up

MAL-2026-15864

Malicious code in asti (PyPI)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: kam193 (524f4f92d8a8c1b63e0164ce77b8185d9ec4d4ce345751a1883923351bdcfdbc) The provided functionality hides code that exfiltrates files to a remote location.

---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-09-asti

Reasons (based on the campaign):

- files-exfiltration

- action-hidden-in-lib-usage

- target:android

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/asti

No fixed version published yet for asti (pip). Pin to a known-safe version or switch to an alternative.

References