Supply-chain threat intelligence
Risk score
92
Indexed incident for django-auth-middleware-plus (pypi).
During import, package exfiltrates sensitive enviromental variables, configuration files and establishes persistence via entry in .bashrc and similar files.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-06-django-auth-middleware-plus
Reasons (based on the campaign):
dependency-confusion
exfiltration-credentials
exfiltration-env-variables
persistence
files-exfiltration
Affected versions
Indicators
Timeline