heroku-tl
MAL-2025-2967
PyPImalware3/8/2025
Description
Malicious code in heroku-tl (PyPI)
Indicators of Compromise
SHA256 Hashes (7)
0a8f4fc0a5d0503ac09d15275006031ce30676e8778cddddd61d8fd257fd3518
f65785e45b1a1412bb45fd3f8bbc75a9ba4709d4749e07b8db315d28c58cc1f7
8a78aff2389300306864bb3d44e1ac70675e128845a4d734dae5ffbc39076b93
f582fa05d5a878f06b3d751c56ce9c8231144aa385b567532baf91452d6af91c
e0f9dcd6289d0a3933488f9c5affeaaebd78d6ad3eb20d542b1e2782c068ca90
f0712a9afe745c4bc3354354515ea6ae3559f44a0084e181f890244801905dfd
cd936b22207b5a7a8164d664ed3f3bd13f58d8f3a53493a2e767f36221d1632b
Domains (2)
banlist.heroku-ub.topheroku-ub.top
References (1)
Details
EcosystemPyPI
Attack Typemalware
Published3/8/2025
Quick Actions