MAL-2025-3450

    Dashboard / Malicious Package / MAL-2025-3450

    MAL-2025-3450

    Published: 18 Mar 2025Last Modified: 19 Mar 2026

    Summary: Malicious code in logax (PyPI)

    Details: Source: kam193 (e129e6d6d38e21a039bd2190e3138f1381ad386e45a49521621a8b8ad61f7678) The package is capable of installing malware from a hardcoded URL. The malware is well-recognized and acts as infostealer. Interestingly, it uses Steam profiles to get the current C2 domain (based on sandbox analysis). Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-03-logax Reasons (based on the campaign): - infostealer - malware

    Affected packages

    Package

    Name: logax

    Purl: pkg:pypi/logax

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    1
    MAL-2025-3450 | CVE-DB