Skip to main content

Security research - dependency confusion PoC (authorized bug bounty)

This project has been quarantined.

PyPI Admins need to review this project before it can be restored. While in quarantine, the project is not installable by clients, and cannot be being modified by its maintainers.

Read more in the project in quarantine help article.

Project description

Security Research - Dependency Confusion PoC

This package is part of an authorized bug bounty engagement demonstrating a dependency confusion vulnerability affecting Mistral AI.

The real mistral-evals repository exists at https://github.com/mistralai/mistral-evals but was never registered on PyPI, and the mistral-* namespace is not protected by a PyPI Organization.

Contact: tushar637811@gmail.com

This package performs only a DNS callback for proof of execution. No malicious or destructive actions are taken.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

mistral_evals-999.0.0.tar.gz (1.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

mistral_evals-999.0.0-py3-none-any.whl (1.8 kB view details)

Uploaded Python 3

File details

Details for the file mistral_evals-999.0.0.tar.gz.

File metadata

  • Download URL: mistral_evals-999.0.0.tar.gz
  • Upload date:
  • Size: 1.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.0

File hashes

Hashes for mistral_evals-999.0.0.tar.gz
Algorithm Hash digest
SHA256 d999413b7084303eb3abd4671991ee72df987c84ac40201c7fdf71031158ce34
MD5 fb993bc633aa4732d8699ba5ae076dbc
BLAKE2b-256 ff0caf738569adfbe254e80d596a61a2f81e423311cbc96dc14402722fbcceee

See more details on using hashes here.

File details

Details for the file mistral_evals-999.0.0-py3-none-any.whl.

File metadata

File hashes

Hashes for mistral_evals-999.0.0-py3-none-any.whl
Algorithm Hash digest
SHA256 f3e6e712d0ad1d4afa9e3d632a495e1361b01a9c0d7cd59a832007a6630cea78
MD5 ea590157c8db9b325c5b6a6c4182550e
BLAKE2b-256 2d6b3e65472f333285422f654e2141f4b2685b3fb091cf1fbb228c31863de78a

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page