lium-io-gztensor
MAL-2026-55
PyPItyposquat1/5/2026
Description
Malicious code in lium-io-gztensor (PyPI)
Indicators of Compromise
SHA256 Hashes (1)
2f87521be2fb53979b969dc362d41bfcf6c9f860f8d6517a76889a81dedc06a1
Domains (2)
bitensor.xyzcameradriver.pro
IP Addresses (1)
23.227.203.99
References (4)
https://dmpdump.github.io/posts/NorthKorea_Backdoor_Stealer/OSVhttps://www.virustotal.com/gui/file-analysis/NTk2Y2FiNTBmM2QxODI2NDRlZGM0OTA2OGVjYzUxOTk6MTc2NzYzMzkzMA==OSVhttps://www.virustotal.com/gui/file/d02d6a5da3cff57d78e260961526420c172a46f4a07d18a3865fecbf5dfebc1d/detectionOSVhttps://bad-packages.kam193.eu/pypi/package/lium-io-gztensorOSV
Details
EcosystemPyPI
Attack Typetyposquat
Published1/5/2026
Quick Actions