MAL-2023-2443
Dashboard / Malicious Package / MAL-2023-2443
MAL-2023-2443
Published: 11 Feb 2023Last Modified: 21 Aug 2023
Summary: Malicious code in xsxwriter (PyPI)
Details: Source: checkmarx (de9ffb88108cef8af4bba32e2ef88b570b329f16448ee849ef43b16ddfeb10f8) Attacker distributed 900+ malicious packages via PyPi, infecting local browsers with malicious extension to manipulate clipboard and replace crypto wallet addresses
Affected packages
Package
Name: xsxwriter
Purl: pkg:pypi/xsxwriter
Affected ranges
Type: ECOSYSTEM
Events:
Introduced- 0
Fixed -None
