tcloud-python-sdks
MAL-2025-191887
PyPImalware2/25/2025
Description
Malicious code in tcloud-python-sdks (PyPI)
Indicators of Compromise
SHA256 Hashes (4)
f670ee958581db060de4711f04074fc831dfe1b995c8c55bda1226d1d3d33e21
601415ac1e4afe43331c4b78d99e406f34b4a970a365a366cdc0598c5cb22f9c
78e0142d08c1c3bdf69dd6a91444761b7173fc5225e6b875a27e6c91ace0409c
5995dca2d5e3824e8ee69489eafaceec6a6eb6ef7f7834063bd084616b4e9186
Domains (2)
checktimeserver.orgaliyun-sdk-requests.xyz
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/tcloud-python-sdksOSV
Details
EcosystemPyPI
Attack Typemalware
Published2/25/2025
Quick Actions