VDB
Sign up
—

MAL-2026-17167

Malicious code in prosocks (PyPI)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: kam193 (a1ca37b881f19975a8ab8b23bd5e69b51355333374385aabfc5784b69bf95545) The package automatically joins the machine to a proxy network. Depending on the version, it can happen during the package installation or when importing the module.

---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-09-prosocks

Reasons (based on the campaign):

- other

- peristence-autorun

- persistence

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/prosocks

No fixed version published yet for prosocks (pip). Pin to a known-safe version or switch to an alternative.

References