Skip to content

MALICIOUS (1) campaign cataloged at 2025-04-30(2).

  1. The campaign has clearly malicious intent, like infostealers.
  2. This is just the date of creating the catalog entry. It may not reflect the date of creation of the campaign itself.

2025-04-helmet-fastapi

Package contains hidden code adding a backdoor - a WebSocket path handler which will execute commands sent by an attacker knowing the path. In addition, it adds a log handler to remove related access logs.

Abuse categories

backdoor

Campaign uses backdoor.

obfuscation

Campaign uses obfuscation.

Packages in the campaign

campaign:2025-04-helmet-fastapi