osv:MAL-2025-1977

Malicious code in hellohackers (PyPI)

none

Description


-= Per source details. Do not edit below this line.=-

Source: kam193 (63788f1f3223270be7955b619eb09fa7e7f401084e4332ed732d33b522782a37)

File contains a metapreter beacon that runs in the setup.py. Analysed version uses a local IP as the target.


Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2025-02-hellohackers

Reasons (based on the campaign):

  • The package contains code to create a reverse shell, allowing an attacker to execute any commands on the victim's machine.

Source: OSV

Metrics

Show all metrics
Severity
none
no public PoC known
Published
2025-02-05 13:44 UTC