gztensor-cli
MAL-2026-53
PyPItyposquat1/5/2026
Description
Malicious code in gztensor-cli (PyPI)
Indicators of Compromise
SHA256 Hashes (3)
19f3c00d7a3a1b03a4524168199226aa56d2a86086aeabb3ef3f1fc860f10973
9849e93934366bce1507e103687b8777fc90358a35173ff44ad34dc9b871c644
6010189e23e54782200df770b6e40ed7e37284779c25f28cd145aadd9ee8b623
Domains (2)
bitensor.xyzcameradriver.pro
IP Addresses (1)
23.227.203.99
References (4)
https://dmpdump.github.io/posts/NorthKorea_Backdoor_Stealer/OSVhttps://www.virustotal.com/gui/file-analysis/NTk2Y2FiNTBmM2QxODI2NDRlZGM0OTA2OGVjYzUxOTk6MTc2NzYzMzkzMA==OSVhttps://www.virustotal.com/gui/file/d02d6a5da3cff57d78e260961526420c172a46f4a07d18a3865fecbf5dfebc1d/detectionOSVhttps://bad-packages.kam193.eu/pypi/package/gztensor-cliOSV
Details
EcosystemPyPI
Attack Typetyposquat
Published1/5/2026
Quick Actions