VDB
Sign up
—

MAL-2026-17181

Malicious code in reqparser (PyPI)

Details

--- _-= Per source details. Do not edit below this line.=-_

## Source: kam193 (982923c14e644e82a839621d37715fd123568fc378aed45b6afa6247bc0b5054) During the module import, the package starts an infostealer. It exfiltrates data from crypto currency wallets and web browsers, ensures persistence and installs further malware.

---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-09-reqparser

Reasons (based on the campaign):

- malware

- persistence

- exfiltration-crypto

- exfiltration-browser-data

- The package contains code to detect if it is running in a sandbox environment.

- infostealer

- keylogger

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/reqparser

No fixed version published yet for reqparser (pip). Pin to a known-safe version or switch to an alternative.

References