amzclients-sdk
MAL-2025-191679
PyPImalware2/25/2025
Description
Malicious code in amzclients-sdk (PyPI)
Indicators of Compromise
SHA256 Hashes (4)
ab76d7b555a29130a3622cb4a543a360a1f2f98e3ff1c47023eaaaf1bee79bcf
7918a5aab99f521336ce5a17ca3b3dae77256011f91ed8dc22c4d9a38123f539
770a8ee250da294a28f6705ddc048e7dab0396418de028475511026ed2cb8ab8
fb4dbcb25887802279134a33808632811d94f9fdbd77d6697a6f6ad6e7e8005d
Domains (2)
checktimeserver.orgaliyun-sdk-requests.xyz
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/amzclients-sdkOSV
Details
EcosystemPyPI
Attack Typemalware
Published2/25/2025
Quick Actions