pypi · Malicious package advisory
Malwarehuangpy
MAL-2024-11610
Malicious code in huangpy (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (a914c7e2cc097ba21e12b61f176cefd1971bb2a38f3b5fe2e81038e143f27da9) Importing the module starts an infostealer attempting to exfiltrate webbrowsers' data to a Telegram webhook. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-10-huangpy Reasons (based on the campaign): - infostealer - A Telegram webhook is used to send collected data.
Compromised versions (1)
- 0.0.1
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.