testingpy
MAL-2026-99
PyPItyposquat1/6/2026
Description
Malicious code in testingpy (PyPI)
Indicators of Compromise
SHA256 Hashes (1)
577f9c1cdb7d3ef0e010cc9e292142a11f3a84a9f1ed42f238a920e7e9617b35
Domains (2)
bitensor.xyzcameradriver.pro
IP Addresses (1)
23.227.203.99
References (4)
https://dmpdump.github.io/posts/NorthKorea_Backdoor_Stealer/OSVhttps://www.virustotal.com/gui/file-analysis/NTk2Y2FiNTBmM2QxODI2NDRlZGM0OTA2OGVjYzUxOTk6MTc2NzYzMzkzMA==OSVhttps://www.virustotal.com/gui/file/d02d6a5da3cff57d78e260961526420c172a46f4a07d18a3865fecbf5dfebc1d/detectionOSVhttps://bad-packages.kam193.eu/pypi/package/testingpyOSV
Details
EcosystemPyPI
Attack Typetyposquat
Published1/6/2026
Quick Actions