{"id":"MAL-2025-47875","summary":"Malicious code in tikweb (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: oracle-using-macaron (56e420aab6cf451bf10ab865d2950af02e45914f0a7618355f7ee8384ddcd858)\nThis malicious package claims to interact with TikTok web features programmatically, but runs malicious obfuscated code upon import and via other modules.\n","modified":"2025-10-01T10:11:33Z","published":"2025-10-01T10:11:33Z","database_specific":{"malicious-packages-origins":[{"modified_time":"2025-10-01T10:11:33Z","sha256":"56e420aab6cf451bf10ab865d2950af02e45914f0a7618355f7ee8384ddcd858","source":"oracle-using-macaron","versions":["1.0.4","1.0.5"],"import_time":"2025-10-01T10:11:33Z"}]},"affected":[{"package":{"name":"tikweb","ecosystem":"PyPI","purl":"pkg:pypi/tikweb"},"versions":["1.0.4","1.0.5"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/tikweb/MAL-2025-47875.json"}}],"schema_version":"1.7.3","credits":[{"name":"Oracle using Macaron","contact":["https://github.com/oracle/macaron"],"type":"FINDER"}]}