MAL-2024-10163
Dashboard / Malicious Package / MAL-2024-10163
MAL-2024-10163
Summary: Malicious code in solana-token (PyPI)
Details: Source: kam193 (7a052cb86f0a3ef5266420bcfed9256955a31ea75bfe4197c42d3a2740621ab4) Code exfiltrates the current python code and/or IPythonshell history Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-05-solana-token Reasons (based on the campaign): - crypto-related - impersonation - action-hidden-in-lib-usage - exfiltration-crypto
References: https://thehackernews.com/2025/05/malicious-pypi-package-posing-as-solana.html, https://bad-packages.kam193.eu/pypi/package/solana-token, https://www.reversinglabs.com/blog/same-name-different-hack-pypi-package-targets-solana-developers, https://thehackernews.com/2025/05/malicious-pypi-package-posing-as-solana.html
Affected packages
Package
Name: solana-token
Purl: pkg:pypi/solana-token
Affected ranges
Type: N/A
Events:
