Skip to content
supplychainattack.orgSupply chain attack incident catalog
containedcritical

Malicious code in idnna (PyPI)

A malicious package named idnna was published to PyPI, imitating a legitimate library. During installation, the package executes obfuscated code that downloads and runs a malicious executable, exfiltrating cryptocurrency wallet data and potentially other sensitive information.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
All users who installed the malicious idnna package from PyPI
Ecosystems
Attack vectors
Affected entities
  • idnnaTyposquatting package imitating a popular library

A typosquatting campaign distributed a malicious package named idnna on PyPI designed to imitate a popular library. The package was part of campaign 2026-08-flasq and identified by OpenSSF's malicious-packages project.\n\nDuring installation, the malicious package overrides the install command in setup.py to execute obfuscated code. This code downloads a remote executable and executes it on the victim's system. The attack exfiltrates at least cryptocurrency wallet data, with potential for broader data theft.\n\nThe malicious code was identified and attributed to kam193 (commit c3caa6af02ad3844d721b93e94796fed92506f24517c3b990d741b147eee5acf). The incident was disclosed on 2026-08-07 via GitHub Security Advisory GHSA-wp5p-rpw9-7xxj.

Indicators of compromise

Packages
  • idnna

Remediation

  • Immediately uninstall the idnna package if installed
  • Scan systems for the downloaded malicious executable and remove it
  • Reset cryptocurrency wallet credentials and monitor accounts for unauthorized activity
  • Review system logs for suspicious process execution during the package installation period
  • Use dependency scanning tools to identify if idnna was installed in any projects
  • Consider credential rotation for any systems where the package was installed

Sources

  1. GitHub Advisory GHSA-wp5p-rpw9-7xxj · GitHub Advisory Database

Cite this entry

"Malicious code in idnna (PyPI)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed August 7, 2026; last updated August 7, 2026. https://supplychainattack.org/incident/malicious-code-in-idnna-pypi-6i1itq

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. containedcritical

    Malicious code in @years19/n8n-nodes-utils-helper-d (npm)

    The npm package @years19/n8n-nodes-utils-helper-d contained malicious code that downloads and executes a Python DDoS/offensive-tooling dropper on installation. The package impersonates a legitimate n8n community node but performs unauthorized system reconnaissance and beacons host identity to an attacker-controlled endpoint.

    npmPyPICompromised packageTyposquatting
  2. containedcritical

    Malicious code in fastapii (PyPI)

    The fastapii package on PyPI is a typosquatting attack imitating the popular FastAPI library. During installation, it executes obfuscated code that downloads and runs a malicious executable, exfiltrating cryptocurrency wallet data and potentially other sensitive information.

    2026 08 FlasqPyPITyposquattingCompromised package
  3. containedcritical

    Malicious code in flasq (PyPI)

    A malicious package named flasq was published on PyPI, imitating a popular library. During installation, it executes obfuscated code that downloads and runs a malicious executable, exfiltrating cryptocurrency wallet data and potentially other sensitive information.

    PyPITyposquattingCompromised package
  4. containedcritical

    Malicious code in fast-hashes (PyPI)

    A malicious package named fast-hashes was published to PyPI, using typosquatting to imitate a legitimate library. During installation, obfuscated code downloads and executes a remote malicious executable that exfiltrates cryptocurrency wallet data and potentially other sensitive information.

    2026 08 Flasq CampaignPyPITyposquattingCompromised package