MAL-2024-11744

    Dashboard / Malicious Package / MAL-2024-11744

    MAL-2024-11744

    Published: 3 Oct 2024Last Modified: 19 Mar 2026

    Summary: Malicious code in viplotlib (PyPI)

    Details: Source: kam193 (2613f1ba2960b7e0358efd0c3e8cf7977619c4c21f485a57bc5244e063cdf1db) Running the module triggers obfuscated code that downloads a DLL containing reverse shell and injects it to a benign process. Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-10-alfooou Reasons (based on the campaign): - backdoor - obfuscation

    Affected packages

    Package

    Name: viplotlib

    Purl: pkg:pypi/viplotlib

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    1.0.0
    1.0.1
    MAL-2024-11744 | CVE-DB