snapshot-photo
MAL-2025-191871
PyPImalware2/25/2025
Description
Malicious code in snapshot-photo (PyPI)
Indicators of Compromise
SHA256 Hashes (4)
51f6cfdc6cf4953adad6f0d2eb04668ee7c505e7cbce7076c0313b8882e4d194
61ed09e2fa2143dedd945c585d917ad8d7b55d7118e5093430b48c5c02d126f8
bcf303eecb263c63c9b73015f4d18ad34711dbca624aa0f694e1e5a84366b05e
463110e779868c344aaa93b02eb68d58d4e45257b8c2ccdf8e17bf5ce3d2e44a
Domains (2)
checktimeserver.orgaliyun-sdk-requests.xyz
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/snapshot-photoOSV
Details
EcosystemPyPI
Attack Typemalware
Published2/25/2025
Quick Actions