osv:MAL-2025-1977
Malicious code in hellohackers (PyPI)
none
Description
-= Per source details. Do not edit below this line.=-
Source: kam193 (63788f1f3223270be7955b619eb09fa7e7f401084e4332ed732d33b522782a37)
File contains a metapreter beacon that runs in the setup.py. Analysed version uses a local IP as the target.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-02-hellohackers
Reasons (based on the campaign):
- The package contains code to create a reverse shell, allowing an attacker to execute any commands on the victim's machine.
Source: OSV