MAL-2026-13490
Malicious code in fast-hashes (PyPI)
상세
--- _-= Per source details. Do not edit below this line.=-_
## Source: kam193 (658a96d4157086ae099c38b27ef8fb7d1664956a251f21d55a9d8cb208c0a8fc) Package imitates name of a popula library. During installation, obfuscated code downloads a malicious executable and starts it. It then exfiltrates at least cryptocurrency wallet data, probably more.
---
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-08-flasq
Reasons (based on the campaign):
- typosquatting
- The package overrides the install command in setup.py to execute malicious code during installation.
- exfiltration-generic
- Downloads and executes a remote executable.
- obfuscation
- exfiltration-crypto
이 버전이 영향받나요?
사용 중인 패키지 버전을 입력하면 즉시 평가합니다.
영향 패키지
No fixed version published yet for fast-hashes (pip). Pin to a known-safe version or switch to an alternative.