{"id":"MAL-2024-6051","summary":"Malicious code in styler (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","modified":"2024-12-09T14:39:23Z","published":"2024-06-25T13:42:55Z","database_specific":{"malicious-packages-origins":[{"id":"RLMA-2024-04854","import_time":"2024-06-28T02:50:50.348202249Z","modified_time":"2024-06-25T13:42:55Z","sha256":"c036c75ab06095061ffb214640d683a1e382a616dfefd461edc5cd63a2c40127","source":"reversing-labs","versions":["2.0"]},{"sha256":"24ca9880eca3ec5c8d39942a9cd4cbf2fa1c112a6db64665bd92822d5471d516","source":"reversing-labs","versions":["0.1.2b0","0.1.3.1","0.1.3.2","0.1.3.3","0.1.3.4","0.1.3.5","0.1.3.6"],"id":"RLUA-2024-09322","import_time":"2024-10-24T01:00:14.272196861Z","modified_time":"2024-10-16T14:51:56Z"},{"id":"RLUA-2024-11173","import_time":"2024-12-09T14:38:53.784287344Z","modified_time":"2024-12-09T06:51:14Z","sha256":"076144e5782b1b36b683e255b52803a28314c41e5e796fde09540cda832c8bdd","source":"reversing-labs","versions":["0.1.3"]}]},"references":[{"type":"ARTICLE","url":"https://www.reversinglabs.com/blog/w4sp-continues-to-nest-in-pypi-same-supply-chain-attack-different-distribution-method"},{"type":"ARTICLE","url":"https://blog.sonatype.com/malware-monthly-november-2022"}],"affected":[{"package":{"name":"styler","ecosystem":"PyPI","purl":"pkg:pypi/styler"},"versions":["2.0","0.1.2b0","0.1.3.1","0.1.3.2","0.1.3.3","0.1.3.4","0.1.3.5","0.1.3.6","0.1.3"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/styler/MAL-2024-6051.json"}}],"schema_version":"1.7.3","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}