libproxy
MAL-2024-5323
PyPItyposquat6/25/2024
Description
Malicious code in libproxy (PyPI)
Indicators of Compromise
SHA256 Hashes (7)
7a1de19c0b6f786a6b9c843b0d335c5ae50d88fdff834ead6ebebdf4c436e078
74f8d064b862b148e663a87a8d14e4cafc68127945e5c68b1287deb4e9f0a599
adb17ae6ab2259030fc73e0f78a7c7b05033afcedf19a1cdb822f17e12091cef
cd7d095572ec4dd86648a86d8a9ee88e4c5b11e02bc519a951d3c41539d6e6c0
d34fdee2a9c3f8662a837ad1e95e5bc279775b59910ed98c950b8ab756d204ec
d06059887d6f955e4c402a51e2d3c94d5fb82832f7eb1ea63726db5bcff09e70
498f6f401f20b62ea6bb08d2a78c46bb08fc354a753a2fdbc63d935271cf4332
References (4)
https://medium.com/checkmarx-security/python-packages-leverage-github-to-deploy-fileless-malware-b6c281dea58fOSVhttps://security.snyk.io/vuln/SNYK-PYTHON-LIBPROXY-6139262OSVhttps://bad-packages.kam193.eu/pypi/package/libproxyOSVhttps://www.reversinglabs.com/blog/malware-leveraging-public-infrastructure-like-github-on-the-riseOSV
Details
EcosystemPyPI
Attack Typetyposquat
Published6/25/2024
Aliases
SNYK-PYTHON-LIBPROXY-6139262
Quick Actions