VDB
Sign up

MAL-2026-15926

Malicious code in astlsi (PyPI)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: kam193 (902508cd9285413782c405b438e21f1f29787d38aba7badf71aeb4e0b632b9b6) The provided functionality hides code that exfiltrates files to a remote location.

---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-09-asti

Reasons (based on the campaign):

- files-exfiltration

- action-hidden-in-lib-usage

- target:android

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/astlsi

No fixed version published yet for astlsi (pip). Pin to a known-safe version or switch to an alternative.

References