pypi · Malicious package advisory
Malwarereverse434343
MAL-2024-11694
Malicious code in reverse434343 (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (9107d563a329f12fdff39bb22f6d6593f6d005d38f9738c2d3a78c94ee368262) The package contains only a reverse shell started on installation --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-11-predic Reasons (based on the campaign): - The package contains code to create a reverse shell, allowing an attacker to execute any commands on the victim's machine.
Compromised versions (1)
- 1.0.0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.