PyPI · pypi.org
pentesterra-devguard
Webhook Exfil Endpoint: matched "webhook.site"
Why PkgRadar flagged 1.4.20
| Severity | Signal | Evidence |
|---|---|---|
| high | Webhook Exfil Endpoint | matched "webhook.site" · pentesterra_devguard-1.4.20/pentesterra_devguard/credential_flow_collector.py |
| high | Python Bun Js Exec | Python file references the Bun JavaScript runtime — cross-language execution · pentesterra_devguard-1.4.20/pentesterra_devguard/dep_malicious.py |
| high | DNS / OAST exfiltration | matched "canarytokens.com" · pentesterra_devguard-1.4.20/pentesterra_devguard/credential_flow_collector.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.4.20 | High risk | 120 | 2026-06-10 |
1.4.19 | High risk | 80 | 2026-06-04 |
1.4.17 | High risk | 80 | 2026-06-01 |
Campaign attribution
Block this in CI
pkgradar gate --ecosystem pypi pentesterra-devguard==1.4.20