PkgRadar

PyPI · pypi.org

abstract-hugpy

Py Runtime Base64 Decode: base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern.

Why PkgRadar flagged 0.1.400

SeveritySignalEvidence
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · abstract_hugpy-0.1.400/src/abstract_hugpy/worker_agent/agent.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.400High risk152026-06-06
0.1.399High risk152026-06-03
0.1.398High risk152026-06-03
0.1.397High risk152026-06-03
0.1.396High risk152026-06-03
0.1.395High risk152026-06-03
0.1.394High risk152026-06-03
0.1.393High risk152026-06-03
0.1.392High risk152026-06-03
0.1.391High risk152026-06-03
0.1.390High risk152026-06-03
0.1.389High risk152026-06-03
0.1.388High risk152026-06-03
0.1.387High risk152026-06-03
0.1.386High risk152026-06-03
0.1.385High risk152026-06-02
0.1.384High risk152026-06-02
0.1.383High risk152026-06-02
0.1.382High risk152026-06-02
0.1.381High risk152026-06-02
0.1.380High risk152026-06-02
0.1.379High risk152026-06-02
0.1.378High risk152026-06-02
0.1.377High risk152026-06-02
0.1.376High risk152026-06-02
0.1.375High risk152026-05-31
0.1.374High risk152026-05-31
0.1.373High risk152026-05-31
0.1.372High risk152026-05-31
0.1.371Low risk02026-05-31
0.1.370Low risk02026-05-31
0.1.369Low risk02026-05-31
0.1.368Low risk02026-05-31
0.1.367Low risk02026-05-31
0.1.366Low risk02026-05-31
0.1.365Low risk02026-05-31
0.1.364Low risk02026-05-31
0.1.363Low risk02026-05-31
0.1.362Low risk02026-05-31
0.1.361Low risk02026-05-31
0.1.360Low risk02026-05-31
0.1.359Low risk02026-05-30
0.1.358Low risk02026-05-30
0.1.357Low risk02026-05-30
0.1.356Low risk02026-05-30
0.1.355Low risk02026-05-30
0.1.354Low risk02026-05-30
0.1.353Low risk02026-05-30
0.1.352Low risk02026-05-30
0.1.351Low risk02026-05-30
0.1.350Low risk02026-05-30
0.1.349Low risk02026-05-30
0.1.348Low risk02026-05-30
0.1.347Low risk02026-05-30
0.1.346Low risk02026-05-30
0.1.345Low risk02026-05-30
0.1.344Low risk02026-05-30
0.1.343Low risk02026-05-30
0.1.342Low risk02026-05-30
0.1.341Low risk02026-05-30
0.1.340Low risk02026-05-30
0.1.339Low risk02026-05-30
0.1.338Low risk02026-05-30
0.1.337Low risk02026-05-30
0.1.336Low risk02026-05-30
0.1.335Low risk02026-05-30
0.1.334Low risk02026-05-30
0.1.333Low risk02026-05-30
0.1.332Low risk02026-05-30
0.1.331Low risk02026-05-30
0.1.330Low risk02026-05-30
0.1.329Low risk02026-05-30
0.1.328Low risk02026-05-30
0.1.327Low risk02026-05-30
0.1.326Low risk02026-05-29
0.1.325Low risk02026-05-29
0.1.324Low risk02026-05-29
0.1.323Low risk02026-05-29
0.1.322Low risk02026-05-29
0.1.321Low risk02026-05-29
0.1.320Low risk02026-05-29
0.1.319Low risk02026-05-29
0.1.317Low risk02026-05-29
0.1.318Low risk02026-05-29
0.1.316Low risk02026-05-29
0.1.315Low risk02026-05-29
0.1.314Low risk02026-05-29
0.1.313Low risk02026-05-29
0.1.312Low risk02026-05-29
0.1.311Low risk02026-05-29
0.1.310Low risk02026-05-28
0.1.309Low risk02026-05-28

Block this in CI

PkgRadar gates abstract-hugpy (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi abstract-hugpy==0.1.400