VYPR

pypi · Malicious package advisory

Malware

web3-eth-account

GHSA-6rvw-xw58-h4pf

Malicious code in web3-eth-account (PyPI)

Details

**Severity:** Critical

**Affected versions:** `= 0.14.0`

## Source: kam193 (bd36aeb2d45881a66bf5373c0b91a108637938dab5e0c153525e6f938c9c9503)
A clone of a legitimate package with import-time malicious code activating if specific env variables are set. Once activated, it queries the blockchain to retrieve the next stage URL stored in a smart contract. The payload from the URL is then downloaded and executed. The address of the smart contract is not included in the package.


---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.


Campaign: 2026-09-web3-eth-account


Reasons (based on the campaign):


 - typosquatting


 - clones-real-package


 - c2-in-blockchain


 - Downloads and executes a remote malicious script.

---

Credit: [OpenSSF](https://github.com/ossf/malicious-packages) ([source](https://github.com/ossf/malicious-packages/blob/76fca84d951bd7c535edfd649d3892a2c1e9911f/osv/malicious/pypi/web3-eth-account/MAL-2026-16129.json))

**References:**
- https://bad-packages.kam193.eu/pypi/package/web3-eth-account
- https://github.com/ossf/malicious-packages/blob/76fca84d951bd7c535edfd649d3892a2c1e9911f/osv/malicious/pypi/web3-eth-account/MAL-2026-16129.json
- https://github.com/advisories/GHSA-6rvw-xw58-h4pf

Compromised versions (1)

  • = 0.14.0

Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.