alicloud-client
MAL-2025-191676
PyPImalware2/25/2025
Description
Malicious code in alicloud-client (PyPI)
Indicators of Compromise
SHA256 Hashes (4)
193d791d6350ebf0e5200169f40cba80e114e1998a27f672edf72fb74fb34d9d
6366aa8c2eff918da0f1cc2118a026e749592f71bebbe81215877575b9593c6a
8401e8ad0f6a4aa28f280479726963d4c59dcc30d2f06fe1fc67fe70dfe24e5f
bf299f135b8b88d83c9db8576360352984af4bbbe5071c4d4460507974301959
Domains (2)
checktimeserver.orgaliyun-sdk-requests.xyz
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/alicloud-clientOSV
Details
EcosystemPyPI
Attack Typemalware
Published2/25/2025
Quick Actions