Skip to content

MALICIOUS (1) package from Python Package Index.

  1. The campaign has clearly malicious intent, like infostealers.

elementary-data

Affected versions: (1) 0.23.3

  1. Version numbers are usually added automatically. In most cases, the packages listed here were created only to distribute malicious code.

Campaign data

Campaign information may not always be 100% accurate for every related package.

Campaign description

A threat actor exploited a vulnerability in the CI workflows to inject code and establish, likely, a reverse shell in the CI environment (https://github.com/elementary-data/elementary/actions/runs/24914128534/job/72962412074). Following that, the access was used to create 3 PRs with malicious code, and finally publish the malicious 0.23.3 version of the elementary-data package to PyPI, which was available between 2026-04-24 22:20 and 2026-04-25 9:45 (UTC) (https://github.com/elementary-data/elementary/actions/runs/24914446630). Malicious code was also published as a Docker image.

Malicious code was inserted in a PTH file, causing execution on any Python run. It then collects all kinds of sensitive data (credentials, .env files, cloud tokens, cryptocurrency wallets, Kubernetes configurations, shell history, data from AWS secret manager, ...) and exfiltrates to the hardcoded target.

See more details on the campaign page.

compromised-package

Campaign targets compromised-package.

exfiltration_cloud_tokens

Campaign targets exfiltration_cloud_tokens.

exfiltration_credentials

The package attempts to steal credentials, like passwords or API keys.

exfiltration_crypto

The package attempts to steal sensitive cryptocurrency-related data, like wallet keys.

exfiltration_generic

Campaign targets exfiltration_generic.

exfiltration_ssh_keys

Campaign targets exfiltration_ssh_keys.

exploited-ci-vulnerability

Campaign targets exploited-ci-vulnerability.

files_exfiltration

Campaign targets files_exfiltration.

obfuscation

Code uses obfuscation techniques to hide its true purpose.

Look up in other services

  1. May not be available. See more in pypi-json-data repository.
  2. Open Source Insights project, provided by Google.
  3. Service from Socket.dev, a cybersecurity company.
  4. Spectra Assure Community, a service from ReversingLabs, a cybersecurity company.
  5. Service from Snyk, a cybersecurity company.