VDB
Sign up

MAL-2026-16267

Malicious code in pyjstat-smooth (PyPI)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: kam193 (82a12638b869aecb566588c24c0f59c3137f9b89a26ae67222370249a7176a75) The package hides code to exfiltrate specific files from the user's machine. The used file paths suggest it was intended to be used in a CTF-like environment.

---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-09-pyjstat-smooth

Reasons (based on the campaign):

- files-exfiltration

- obfuscation

- targetted-attack

- clones-real-package

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/pyjstat-smooth

No fixed version published yet for pyjstat-smooth (pip). Pin to a known-safe version or switch to an alternative.

References