pypi · Malicious package advisory
Malwaresolana-token
MAL-2024-10163
Malicious code in solana-token (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (7a052cb86f0a3ef5266420bcfed9256955a31ea75bfe4197c42d3a2740621ab4) Code exfiltrates the current python code and/or IPythonshell history --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-05-solana-token Reasons (based on the campaign): - crypto-related - impersonation - action-hidden-in-lib-usage - exfiltration-crypto
Compromised versions (4)
- 1.0.1
- 1.0.2
- 0.0.2
- 0.0.1
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.