Close Menu
  • Latest News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Meme Coins
  • DeFi
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • Gaming
  • Legal
    • Taxes & Regulation
    • Adoption
  • Analysis
  • Learn
    • Education
    • Wallets and Exchanges
  • Tools
    • Market Overview
    • Converter
What's Hot

Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

June 4, 2025

California lawmakers approve bill allowing crypto payments for state services

June 4, 2025

Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

June 4, 2025
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
Facebook X (Twitter) Instagram
Buy Crypto NewsBuy Crypto News
  • Latest News
    1. Bitcoin
    2. Ethereum
    3. Altcoins
    4. Meme Coins
    5. View All

    Bitcoin Profit Taking Speeds Up Post Golden Cross, Hourly Cashouts Top $500M

    June 4, 2025

    MARA Announces Over $100 Million In Bitcoin Mined In May 2025

    June 4, 2025

    Here’s What to Expect From the BTC Price

    June 3, 2025

    Matter of Time Before Altcoins Take Big Dive Against Bitcoin, According to Analyst Benjamin Cowen

    June 3, 2025

    Ethereum’s big moment: Why institutions are betting big on ETH

    June 4, 2025

    Money Flooding Into Ethereum—Is the Momentum Building for the ETH Price Rally to $4000?

    June 4, 2025

    Ethereum – Here’s why there are plenty of trading opportunities this week

    June 4, 2025

    Is $2,850 the Next Pitstop?

    June 3, 2025

    PEPE leads 9% surge, $1B+ in volume – Can the gains continue?

    June 4, 2025

    Bitcoin ATH Incoming? Whale Accumulation Hints at Potential Bullish Breakout

    June 4, 2025

    44 mln SUI drops into the market – 2 paths ahead for price action

    June 3, 2025

    Ethereum Whales Are Back—And The Charts Scream Bull Run

    June 3, 2025

    Pepe, BMT, CAKE: Crypto Activity Heats Up

    March 18, 2025

    SHIB Burns Over Half a Billion Tokens, Price Surges Over 7%

    March 17, 2025

    DOGE Sees Massive User Growth: Active Addresses Up 400%

    March 15, 2025

    Shiba Inu (SHIB) Price Analysis: Bullish Hints, Bearish Trend

    March 15, 2025

    Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

    June 4, 2025

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025

    Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

    June 4, 2025

    Ethereum’s big moment: Why institutions are betting big on ETH

    June 4, 2025
  • DeFi

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025

    ZachXBT links LiFi volume surge to DPRK laundering post-Bybit hack

    June 4, 2025

    AAVE price pattern signals a 50% jump ahead of the Umbrella update

    June 4, 2025

    SUI slides 20% as $4 rally reverses course

    June 3, 2025

    Crypto ATM operators in Australia hit with cash limits and tougher compliance checks

    June 3, 2025
  • Tech
    1. Blockchain
    2. Security and Privacy
    3. View All

    Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

    June 4, 2025

    World Network Expands Global ‘Proof of Human’ Tech as AI Deepfakes Surge

    June 4, 2025

    Russian Investigators Begin Seizing Bitcoin from Illegal Crypto Miners

    June 4, 2025

    Clearpool’s Ozean Integrates ChainSight for Secure RWA Oracle Infrastructure

    June 4, 2025

    Cryptojacking Campaign Targets DevOps Servers Including Nomad

    June 3, 2025

    Sophisticated Malware Campaign Targets Windows and Linux Systems

    June 2, 2025

    US Treasury sanctions Philippines tech firm over aiding $200 million pig butchering spree

    May 31, 2025

    Fake Bitdefender Site Spreads Trio of Malware Tools

    May 28, 2025

    Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

    June 4, 2025

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025

    Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

    June 4, 2025

    Ethereum’s big moment: Why institutions are betting big on ETH

    June 4, 2025
  • Web 3
    1. Web3 News
    2. Gaming
    3. View All

    TruGolf to Participate in the “2025 Virtual Tech Conference: Discover the Innovations Reshaping Tomorrow” Conference Presented by Maxim Group LLC on Wednesday, June 4th at 3:00 PM EDT – (Updated)

    June 4, 2025

    BitMart Discovery Officially Launches, Pioneering a New Era in Quality Asset Discovery

    June 4, 2025

    My Neighbor Alice Launches 500,000 $ALICE Token Airdrop For Alice Birthday Party

    June 3, 2025

    MoonFox Data Releases New Report: Instant Retail Becomes the Next Battleground as JD.com and Meituan Intensify Food Delivery Competition in China

    June 3, 2025

    My Neighbor Alice Announces Adventure Airdrop of 500K $ALICE for Community Celebration

    June 3, 2025

    Solana Meme Coin Bonk Launches ‘Kill-to-Earn’ Shooter Game

    June 3, 2025

    Yuga Labs Offloads Moonbirds to OCG – Vision, Plans & Market Reaction

    June 2, 2025

    Earn 5x GUN Tokens Monthly: A Complete Guide to Off the Grid Battle Pass

    June 2, 2025

    Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

    June 4, 2025

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025

    Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

    June 4, 2025

    Ethereum’s big moment: Why institutions are betting big on ETH

    June 4, 2025
  • Legal
    1. Taxes & Regulation
    2. Adoption
    3. View All

    SEC’s Crypto Task Force Gets Crucial Input From EY

    June 4, 2025

    Ripple Urges SEC to Launch Real-World Crypto Sandboxes

    June 4, 2025

    Ripple CLO on New US Crypto Bill: ‘Big Step Forward’

    June 3, 2025

    Dubai crypto ambitions soar with Solana and Ripple moves

    June 3, 2025

    Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

    June 4, 2025

    NYSE Arca submits filing to list Truth Social’s spot Bitcoin ETF

    June 4, 2025

    StanChart warns of potential liquidation risks for corporations adopting Bitcoin at high prices

    June 4, 2025

    XRP Ledger transaction volume dips in May as institutional interest rises

    June 3, 2025

    Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

    June 4, 2025

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025

    Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

    June 4, 2025

    Ethereum’s big moment: Why institutions are betting big on ETH

    June 4, 2025
  • Analysis

    Binance Coin (BNB) Price Analysis and Short-term Prediction 

    June 4, 2025

    Analyst Says Solana Flashing ‘Very Promising’ Bullish Setup, Predicts Rallies for Two Low-Cap Altcoins

    June 4, 2025

    US Bitcoin ETFs navigate $1.2 billion outflows amid European retail approval

    June 3, 2025

    HYPE Coin Hits All-Time High in Q2 with Binance Listing Boost

    June 3, 2025

    Circle’s IPO attracts major interest, set for $7.2B valuation

    June 2, 2025
  • Learn
    1. Education
    2. Wallets and Exchanges
    3. View All

    What is a Corporate Bitcoin Treasury? The Strategy Behind Companies Holding Crypto

    May 27, 2025

    What Are Tokenized Real-World Assets? Putting Physical Value On-Chain With RWAs

    May 19, 2025

    Users Taunt Grok After xAI Says Modifications Were Made to Spit out ‘White Genocide’ Claim

    May 16, 2025

    What Is Base? The Ethereum Layer-2 Network Launched by Coinbase

    April 29, 2025

    Tether invests in Orionx to boost stablecoin use in Latin America

    June 4, 2025

    Bitstamp finally folds into Robinhood in $200M merger, unlocking global crypto passport

    June 3, 2025

    WLFI’s stablecoin USD1 surpasses $10B in transfers within 10 days of Binance listing

    June 3, 2025

    Circle aims for $7.2b valuation with second share offering

    June 2, 2025

    Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

    June 4, 2025

    California lawmakers approve bill allowing crypto payments for state services

    June 4, 2025

    Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

    June 4, 2025

    Ethereum’s big moment: Why institutions are betting big on ETH

    June 4, 2025
  • Tools
    • Market Overview
    • Converter
Buy Crypto NewsBuy Crypto News
Home»Security and Privacy»Malicious PyPI Package Exposes Crypto Wallets to Infostealer Code
Malicious PyPI Package Exposes Crypto Wallets to Infostealer Code
Security and Privacy

Malicious PyPI Package Exposes Crypto Wallets to Infostealer Code

November 29, 2024No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Security researchers have recently uncovered a malicious Python Package Index (PyPI) package known as “aiocpa” that was designed to steal cryptocurrency wallet data. This deceptive package masqueraded as a legitimate crypto client tool, while secretly siphoning off sensitive information to a Telegram bot. Thanks to the efforts of researchers at Reversing Labs, this threat was identified and promptly removed from the PyPI platform.

The discovery of aiocpa on November 21 raised concerns as it managed to evade traditional security measures by issuing seemingly authentic updates to an innocuous tool. Cloaked within the utils/sync.py file was obfuscated code that wrapped around the CryptoPay initialization function, enabling the extraction of tokens and other confidential data. This malicious code utilized multiple layers of Base64 encoding and zlib compression to conceal its true purpose.

Unlike typical attacks on open-source repositories that rely on impersonation tactics, the creators of aiocpa opted for a more subtle approach. By presenting the package as a legitimate tool, they were able to build a user base without raising suspicion. In fact, the package’s project page appeared well-maintained, with several versions released since September 2024, along with a comprehensive documentation page.

Furthermore, researchers observed an attempt to hijack an existing PyPI project called “pay” in order to exploit its established user base. This strategic move allowed the threat actors to expand their reach and potentially compromise even more users.

In light of this incident, Reversing Labs emphasized the importance of implementing key security measures to safeguard software development. Developers are urged to pin dependencies and versions to prevent unexpected updates, utilize hash checks to verify package integrity, and conduct thorough security assessments using behavioral analysis tools.

See also  Crypto VC investments rise 26% YoY amid market fluctuations in 2024

The aiocpa incident serves as a stark reminder of the growing threat posed by security vulnerabilities in open-source software. Despite efforts to assess the quality and integrity of packages, the complex methods used by threat actors to conceal malicious intent highlight the need for enhanced security measures in the software supply chain.

As threat actors continue to evolve and adapt, it is essential for developers to incorporate dedicated tools into their development process to mitigate risks and prevent security breaches. By remaining vigilant and proactive, the industry can better protect against emerging threats and uphold the integrity of software supply chains.

Code Crypto Exposes Infostealer Malicious Package PyPI wallets
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

California lawmakers approve bill allowing crypto payments for state services

June 4, 2025

SEC’s Crypto Task Force Gets Crucial Input From EY

June 4, 2025

Russian Investigators Begin Seizing Bitcoin from Illegal Crypto Miners

June 4, 2025

Ripple Urges SEC to Launch Real-World Crypto Sandboxes

June 4, 2025
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Will BTC Price Hold or Face Selling Pressure?

May 9, 2025

Jack Dorsey, Elon Musk spark debate over IP law

April 15, 2025

Bitcoin Bond ETFs: How Likely Is SEC Approval in 2025?

March 1, 2025
Price Chart


Explore insights on crypto, blockchain, taxes, and security. Stay informed with expert guides, tips, and the latest trends to navigate the digital asset world confidently


We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Consensys CEO Joe Lubin envisions Ethereum anchoring global finance, surpassing Bitcoin

June 4, 2025

California lawmakers approve bill allowing crypto payments for state services

June 4, 2025

Eric Trump Threatens Magic Eden Over Trump Wallet Announcement— What’s Going On?

June 4, 2025
Get Informed

Subscribe to Updates

Get the latest creative news From BuyCryptoNews directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
© 2025 BuyCryptoNews - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.