express-bus-booking
Warn
Audited by Socket on Sep 17, 2026
1 alert found:
AnomalyAnomalyscripts/kobus_express_booking.py
LOWAnomalyLOW
scripts/kobus_express_booking.py
The code is a legitimate-looking KOBUS schedule and reservation-hold client, not apparent malware. It communicates only with the hardcoded official KOBUS domain and does not steal credentials or execute system commands. However, disabling TLS certificate verification is a significant security weakness because reservation cookies and form data can be intercepted or altered. Generated checkout and cancellation files also contain sensitive reservation information and should be protected. The shown fragment additionally has an apparent syntax error at the final sys.exit(main() call.
Confidence: 98%Severity: 62%
Audit Metadata