Malicious code in advdef01 (PyPI)
The PyPI package advdef01 contained malicious code designed to exfiltrate system information (IP address, username) during installation. The package used a setup.py override to execute the malicious payload when installed.
- Disclosed
- Last updated
- Blast radius
- Low to moderate; limited to users who installed the malicious package from PyPI.
- Ecosystems
- Attack vectors
- Affected entities
- advdef01PyPI package containing malicious code
The PyPI package advdef01 was identified as containing malicious code by the OpenSSF's malicious-packages project. The package was built using a template from the malpip repository (thegoodhackertv/malpip), which is designed to facilitate creation of malicious PyPI packages.\n\nThe malicious payload was executed via an override of the install command in setup.py, allowing code execution during package installation. The malware was designed to exfiltrate basic system information including the user's IP address and username.\n\nThis incident is classified as a low-quality malicious package created by a script kiddie using pre-prepared tools. The campaign identifier is SCRIPT_KIDDIE-thegoodhacker-paquete, indicating the use of publicly available malicious package templates.\n\nThe package has been identified and removed from PyPI. Users who installed advdef01 should assume their system information may have been compromised.
Indicators of compromise
- Packages
- advdef01
Remediation
- Remove the advdef01 package immediately from any systems where it was installed
- Assume system information (IP address, username) has been exfiltrated and monitor for suspicious activity
- Review PyPI installation logs to identify when the package was installed
- Check for any other suspicious packages from the same source or campaign
- Use dependency scanning tools to detect similar malicious packages in your supply chain
Sources
- GitHub Advisory GHSA-rgww-778x-j2gf · GitHub Advisory Database
Cite this entry
"Malicious code in advdef01 (PyPI)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed July 21, 2026; last updated July 21, 2026. https://supplychainattack.org/incident/malicious-code-in-advdef01-pypi-w2e96r
Suggest a correction
Found an error or have a newer source? Corrections to factual errors take priority over new entries.
Related incidents
- containedcritical
Malicious code in acloud-clients (PyPI)
A multi-year malicious campaign on PyPI distributes packages that clone legitimate cloud SDK libraries (acloud-clients, AWS clients) and inject code to exfiltrate cloud credentials via hidden dependencies like time-check-server and snapshot-photo.
PyPICompromised packageMalicious commit - resolvedcritical
Malicious code in acloud-client (PyPI)
A multi-year malicious campaign on PyPI distributed packages (acloud-client, time-check-server, snapshot-photo) that clone legitimate cloud SDK packages and exfiltrate cloud credentials to remote servers. The campaign used obfuscation techniques, hiding malicious functionality in dependency chains.
PyPICompromised packageMalicious commit - resolvedcritical
Malicious code in zscaner (PyPI)
A coordinated malicious package campaign on PyPI targeting Telegram Desktop users. Five interdependent packages (zscaner, pyapiepo, reqinstall, zmaker, zsender) work together to locate, archive, and exfiltrate Telegram Desktop user data to a remote server.
PyPICompromised packageMalicious commit - containedcritical
Malicious code in xyq-drama-skill (PyPI)
xyq-drama-skill, a PyPI package, contained malicious code that downloads and executes an unsigned binary from a remote server during installation and on command invocation. The package masquerades as a Chinese short-video drama script generator but actually deploys what appears to be a COFFLoader beacon.
PyPICompromised packageMalicious commit