MAL-2026-14388
Malicious code in cryptgraphy (PyPI)
상세
--- _-= Per source details. Do not edit below this line.=-_
## Source: kam193 (d303a7fa6aef47387f6029dfeb62ce66dd3231c0b0f77fc3611a65d53fc23a1a) During installation package downloads and executes an executable. The remote executable appears to be broken but suggests intentions for persistence via systemd services, cryptocurrency mining and propagating over the network. Campaign shows some similarities with 2026-08-boto4
---
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-08-mlflow-otel-instrumentor
Reasons (based on the campaign):
- typosquatting
- Downloads and executes a remote executable.
- worm
- persistence
- network-scan
- cryptominer
이 버전이 영향받나요?
사용 중인 패키지 버전을 입력하면 즉시 평가합니다.
영향 패키지
No fixed version published yet for cryptgraphy (pip). Pin to a known-safe version or switch to an alternative.