Be careful when fetching a script from GitHub
by baalware - Friday June 30, 2023 at 06:30 AM
#21
(06-30-2023, 06:30 AM)baalware Wrote:
Whoever keeps fetching code from GitHub, beware! I just found, within an import created two days ago, a thief of 1801 lines of code that steals everything from your computer, including your bitcoins. From what I saw, the import was present in 16 repositories.

[Image: Fz2M1i8XsAUWaaP?format=png&name=medium]
The information was being sent to a Discord webhook, and the entire script within the import was encrypted using the Fernet module. So, I created a small script to decrypt it since the key was available within the import.
.
Name of the import with the malicious script.
import pythoncryptolibraryV2

oh man....damn, thanks for the warning
what kind of repositories did you see that code in?
Ban reason: Scraping | Contact us via https://raidforums.hn/contact if you feel this is incorrect. (Permanent)
Reply
#22
Damn, good to know!
Reply
#23
Thanks for your warning.

But unfortunately for modern development, it is difficult to review every referenced library and its dependencies. I think it is inevitable to get caught
Reply
#24
(06-30-2023, 06:30 AM)baalware Wrote:
Whoever keeps fetching code from GitHub, beware! I just found, within an import created two days ago, a thief of 1801 lines of code that steals everything from your computer, including your bitcoins. From what I saw, the import was present in 16 repositories.

[Image: Fz2M1i8XsAUWaaP?format=png&name=medium]
The information was being sent to a Discord webhook, and the entire script within the import was encrypted using the Fernet module. So, I created a small script to decrypt it since the key was available within the import.
.
Name of the import with the malicious script.
import pythoncryptolibraryV2

Nice share! I'll keep an eye on it Dodgy
Reply
#25
Thanks for the warning mate!

Github needs to find a way to aware exploiters!
Ban reason: Leeching | http://raiddfzn73ir6iyxlf7nwytnujiflddog...an-Appeals if you feel this is incorrect. (Permanent)
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Python Script To Steal Any TikTok Username bs0d 301 14,630 03-27-2026, 03:56 PM
Last Post: tokon308222
  [SCRIPT] GOOGLE DORKS GENERATOR Hazura 62 9,687 01-31-2026, 03:47 AM
Last Post: ahmedovic
  [DISCORD] DM All member bot script iCrayTest 0 89 12-24-2025, 05:59 PM
Last Post: iCrayTest
  [FREE] Database Searcher Script the_lich 9 587 04-14-2025, 05:46 AM
Last Post: pawn
  DDOS GITHUB TOOLS! Blach-Hat 57 3,010 04-12-2025, 06:13 PM
Last Post: EFEAuthing



 Users browsing this thread: 1 Guest(s)