MAL-2024-11535
Dashboard / Malicious Package / MAL-2024-11535
MAL-2024-11535
Published: 28 Sept 2024Last Modified: 19 Mar 2026
Summary: Malicious code in bibit (PyPI)
Details: Source: kam193 (e944b3bd6b920bf1cfd786ed25cc65b504bd5701203981a460a9c162a0fc282d) When running the module, this package attempts - depending on the version - to exfiltrate user files, a screenshot, or crypto wallets data (8.1.4). Later continued under different package names. Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2024-09-bitbit Reasons (based on the campaign): - files-exfiltration - crypto-related
Affected packages
Package
Name: bibit
Purl: pkg:pypi/bibit
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
8.1.4
8.1.5
8.1.9
