logo

Database

Use of software with malware In python-anchor

Description

During import, package decrypts and runs a malicious executable. The executable is hidden in an encoded and xored form in the JSON resource file.

This is a follow up of the campaign 2026-03-fastapi-middleware-cors

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Component
Affected version