OpenVSX Registry Verified

Python (PyDev)

by fabioz
a53767e8-b496-56db-8cc7-9f28ae4ddd4c | v0.16.0
94/ 100
CRITICAL risk
Risk verdict
Do not install

Score-based assessment (critical risk, 94/100). No analyst review available.

Analysis record

Analysed
2 weeks ago
Version
v0.16.0
Artifact
SHA256 AC8…E2B
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

1000 detail rows

YARA Rule Matches

15 rules
SeverityRuleHitsFilesMetadata
HIGHCAP HookExKeylogger 1
server/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/pywin32/win32/lib/win32con.pyi
Brian C. Bell -- @biebsmalwareguy FP 5%
LOWRedirectToUnknownPath 9
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydev_runfiles/pydev_runfiles_pytest2.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/requests/requests/models.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/capturer/capturer.pyi +6 more
-
LOWpostinstall persistence mechanism 78
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydev_bundle/pydev_monkey.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/croniter/METADATA.tomlserver/plugins/org.osgi.util.promise_1.3.0.202212101352.jar +75 more
-
LOWcredential env files 40
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydev_bundle/pydev_console_utils.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/build_tools/build_binaries_windows.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stdlib/posix.pyi +37 more
-
LOWNoWriteOnDocumentContentFromRequest 1
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydevd_bundle/_debug_adapter/__main__pydevd_gen_debug_adapter_protocol.py
-
LOWDebuggerStatementsShouldNotBeUsed 103
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydevd_frame_eval/vendored/bytecode/tests/test_peephole_opt.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydev_runfiles/pydev_runfiles_parallel.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydevd_bundle/pydevd_traceproperty.py +100 more
-
LOWUsingCommandLineArguments 1
out/extension.js
-
LOWpostinstall file download 187
server/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stdlib/@tests/stubtest_allowlists/py311.txtserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydevd_frame_eval/vendored/bytecode-0.13.0.dev0.dist-info/METADATAserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/pywin32/win32/lib/win32con.pyi +184 more
-
LOWNoUseWeakRandom 1
out/extension.js
-
LOWNoUseEval 30
server/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/reportlab/reportlab/pdfbase/pdfpattern.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/_pydevd_bundle/pydevconsole_code.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/lupa/lupa/lua54.pyi +27 more
-
LOWpostinstall process injection 5
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/pydevd_attach_to_process/winappdbg/process.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/pywin32/win32/win32process.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/pydevd_attach_to_process/winappdbg/thread.py +2 more
-
LOWpostinstall environment access 238
server/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stdlib/trace.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/pydevd_plugins/__init__.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/PyMeeus/pymeeus/Coordinates.pyi +235 more
-
LOWpostinstall obfuscation 176
server/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stdlib/encodings/punycode.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/antlr4-python3-runtime/antlr4/atn/ParserATNSimulator.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/pywin32/win32/lib/ntsecuritycon.pyi +173 more
-
LOWpostinstall registry modification 114
server/plugins/org.python.pydev.core_13.1.0.202509210817/pysrc/pydev_ipython/matplotlibtools.pyserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/pywin32/win32/lib/regutil.pyiserver/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stubs/fpdf2/fpdf/output.pyi +111 more
-
LOWpostinstall file manipulation 1
server/plugins/org.python.pydev.core_13.1.0.202509210817/typeshed/stdlib/@tests/test_cases/check_types.py
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

1,309 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Low

fabioz

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

55
Noisy-finding weight
x1.00
Publisher domain
No domain
Missing
Store verification signal
Verified publisher
Verified
Extension portfolio
2
Portfolio

12 evidence rows available.

Finding Categories

1
Malware Signatures
6
Obfuscation
1,309
IoC Indicators

YARA Rules Matched

15 rules(985 hits)
CAP HookExKeylogger RedirectToUnknownPath postinstall persistence mechanism credential env files NoWriteOnDocumentContentFromRequest DebuggerStatementsShouldNotBeUsed UsingCommandLineArguments postinstall file download NoUseWeakRandom NoUseEval postinstall process injection postinstall environment access postinstall obfuscation postinstall registry modification postinstall file manipulation

Security Analysis Summary

Security Analysis Overview

Python (PyDev) is a OpenVSX Registry extension published by fabioz. Version 0.16.0 has been analyzed by the Risky Plugins security platform, receiving a risk score of 94.39/100 (CRITICAL risk) based on 5184 security findings.

Risk Assessment

This extension presents critical security risk. Severe issues were detected, potentially including malware indicators, exposed secrets, or dangerous behaviors. Installation is strongly discouraged until these issues are addressed.

Findings Breakdown

  • Critical: 5 finding(s)
  • High: 1 finding(s)
  • Medium: 1310 finding(s)
  • Low: 3868 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

Python (PyDev) is published by fabioz on the OpenVSX Registry marketplace.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

About This Extension

Python with the PyDev Language Server (Linting, Intellisense, Code Formatting, Quick Fixes and more).

Frequently Asked Questions