pypi · Malicious package advisory
Malwareweb3toolkit-base
MAL-2025-6621
Malicious code in web3toolkit-base (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (bdfcb6d5feffbd89fd13ed27d03b0bf7c14970f09ceeb202f8b36703fec6e907) Code monitors the clipboard and when detects a cryptocurrency wallet, attempts to overwrite it with the own address. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-07-web3toolkit-base Reasons (based on the campaign): - crypto-related - clipboard-modify - obfuscation
Compromised versions (4)
- 0.1.0
- 1.0.0
- 1.1.0
- 1.1.1
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.