—
MAL-2026-16267
Malicious code in pyjstat-smooth (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_
## Source: kam193 (82a12638b869aecb566588c24c0f59c3137f9b89a26ae67222370249a7176a75) The package hides code to exfiltrate specific files from the user's machine. The used file paths suggest it was intended to be used in a CTF-like environment.
---
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-09-pyjstat-smooth
Reasons (based on the campaign):
- files-exfiltration
- obfuscation
- targetted-attack
- clones-real-package
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/pyjstat-smooth
No fixed version published yet for pyjstat-smooth (pip). Pin to a known-safe version or switch to an alternative.