{"id":"MAL-2026-5518","summary":"Malicious code in hello-dynamic (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: amazon-inspector (d1532f25a13ed2c77496e590acadc24df4fa7d063e707c53687143a7457e2d2e)\nhello-dynamic 0.1.2 is a near-empty package whose __init__.py only defines a hello() function printing 'Hello!'. Its setup.cfg declares a dependency_links entry pointing at a webhook.site UUID endpoint (https://webhook.site/56557fe9-5bcf-4f26-bed7-38f772525011/pypi/aliga-raison). webhook.site is a generic HTTP-callback inspector commonly used to receive beacon traffic. Modern pip ignores dependency_links, so installer harm is minimal in practice, but the artifact's shape — trivial code, no real functionality, install metadata pointing at a request-inspector endpoint named after a PyPI package — is consistent with a reconnaissance probe testing which installers still process dependency_links. No exfiltration, RCE, credential read, or persistence mechanism is present in the package code.\n\n## Source: kam193 (168dd7abca8ed812dcfb0119eaf80a2b05b186ee37a1e0c8f98e88f884a90602)\nPackage attempts to test exploitation via legacy dependency_links configuration\n\n\n---\n\nCategory: PROBABLY_PENTEST - Packages looking like typical pentest packages, but also anything that looks like testing, exploring pre-prepared kits, research & co, with clearly low-harm possibilities.\n\n\nCampaign: GENERIC-standard-pypi-install-pentest\n\n\nReasons (based on the campaign):\n\n\n - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.\n\n\n - The package overrides the install command in setup.py to execute malicious code during installation.\n","modified":"2026-07-08T23:47:02.359328646Z","published":"2026-06-10T17:21:27Z","database_specific":{"malicious-packages-origins":[{"sha256":"168dd7abca8ed812dcfb0119eaf80a2b05b186ee37a1e0c8f98e88f884a90602","import_time":"2026-06-10T18:03:22.534978256Z","id":"pypi/GENERIC-standard-pypi-install-pentest/hello-dynamic","modified_time":"2026-06-10T17:21:27.40599Z","versions":["0.1.0","0.1.1","0.1.2"],"source":"kam193"},{"import_time":"2026-07-08T22:51:29.597223573Z","id":"IN-MAL-2026-008865","modified_time":"2026-07-08T22:44:35Z","versions":["0.1.0"],"source":"amazon-inspector","sha256":"bd498b2e70ac8f0a58221910520992cddb5e8994c821db69c9ceba6a9a4aaa8f"},{"sha256":"d1532f25a13ed2c77496e590acadc24df4fa7d063e707c53687143a7457e2d2e","import_time":"2026-07-08T23:27:56.388595944Z","id":"IN-MAL-2026-008968","modified_time":"2026-07-08T22:59:40Z","versions":["0.1.2"],"source":"amazon-inspector"}]},"references":[{"type":"WEB","url":"https://bad-packages.kam193.eu/pypi/package/hello-dynamic"},{"type":"PACKAGE","url":"https://pypi.org/project/hello-dynamic/0.1.0/"},{"type":"PACKAGE","url":"https://pypi.org/project/hello-dynamic/0.1.2/"}],"affected":[{"package":{"name":"hello-dynamic","ecosystem":"PyPI","purl":"pkg:pypi/hello-dynamic"},"versions":["0.1.0","0.1.1","0.1.2"],"database_specific":{"cwes":[{"name":"Embedded Malicious Code","cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature."},{"name":"Embedded Malicious Code","cweId":"CWE-506","description":"The product contains code that appears to be malicious in nature."}],"indicators":{"evidence_files":[{"tlsh":"0fc08ca7989290381590c3e0488b202d1e12ea220f0890c9f88d418a0ad54f14eac2a9","path":"setup.py","sha256":"68bc79a85f3d7e47e6ea5f49acd22facde81c98478ca8a71c793a5d703bdef9a"}],"package_integrity":[{"filename":"hello_dynamic-0.1.0.tar.gz","hashes":{"sha256":"dac906996e5ef48c9d7686793079c1b7e24233171cdaa08fbac7406a5338961d","blake2b_256":"67f1e760b3eb348d3fade622b28f4ca4ad0e41df7afa9dc61faf32548daaafe1","md5":"acc0f304a9fcfb7dd553e34b81aaf1dc"}}]},"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/hello-dynamic/MAL-2026-5518.json"}}],"schema_version":"1.7.5","credits":[{"name":"Amazon Inspector","contact":["inspector-research@amazon.com"],"type":"FINDER"},{"name":"Kamil Mańkowski (kam193)","contact":["https://github.com/kam193","https://bad-packages.kam193.eu/"],"type":"REPORTER"}]}