Logo
pypi

idnna@0.3.0

Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 6:41 AM UTC

Malicious

OSV ID

MAL-2026-13488

Ecosystem

pypi

Summary

The package publishes under a name that closely resembles the widely-used idna package and advertises itself as 'HTTP client utilities', but the only importable module is djangoo containing a trivial hello() function. setup.py registers a custom install cmdclass (LinuxInstall) whose post-install step base64-decodes a hidden Python payload stored in _HOOK_B64 and executes it via exec(compile(...)). On Linux, the decoded payload uses urlretrieve to download an opaque binary named something from https://github.com/totti2188/8gp1Q7iZD3h4VW/releases/download/v1.3A/something — an unrelated personal GitHub account whose repository has no connection to the package's stated purpose — chmods it to 0o755, and spawns it detached via Popen. The download destination is not publisher-matched, the fetched artifact is unpinned by hash, and the payload is obfuscated to evade casual review. This fires automatically on pip install of the sdist.

Source: amazon-inspector (da6f2ec3b09fbcf061a9f4ffefe1c179983ad8cdc0af705f2218280ade3c1da3)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.