snapshot-date
MAL-2026-610
PyPImalware1/30/2026
Description
Malicious code in snapshot-date (PyPI)
Indicators of Compromise
SHA256 Hashes (1)
8e86008d35e5f11e68c465940563127cdc9ba1d4b2963f092914bf8e9ce2587b
Domains (4)
checktimeserver.orgaliyun-sdk-requests.xyzapi.jumpservercdn.comjumpservercdn.com
References (4)
https://github.com/pypi-data/pypi-mirror-238/blob/code/packages/snapshot-photo/snapshot_photo-0.0.3-py3-none-any.whl/snapshot_photo/date_format.pyOSVhttps://x.com/ReversingLabs/status/1900198602242204003OSVhttps://thehackernews.com/2025/03/malicious-pypi-packages-stole-cloud.htmlOSVhttps://bad-packages.kam193.eu/pypi/package/snapshot-dateOSV
Details
EcosystemPyPI
Attack Typemalware
Published1/30/2026
Quick Actions