{"id":"MAL-2022-7440","summary":"Malicious code in requuests (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: checkmarx (add900896883e60604145a44ada9b8e7fb1013ea91ee1b719b7b3e26a94824ae)\nMalicious packages typosquatting the popular requests package. payload execute a cryptomining malware\n","modified":"2022-05-31T20:12:58Z","published":"2022-05-31T00:00:00Z","database_specific":{"iocs":{"domains":["serene-springs-50769.herokuapp.com"],"strings":["44ZptWtXxVhjLYGz8oKCMSW6nA9Gpc2RVYQDzyBnaM7VZkaCTGZGEANQTR3pNXK3mzZq1cVzKs1SA3H4Wibc6qVvG5xpcSY"]},"malicious-packages-origins":[{"import_time":"2023-09-04T09:20:36.390590427Z","modified_time":"2022-05-31T20:12:58Z","ranges":[{"events":[{"introduced":"0"}],"type":"ECOSYSTEM"}],"sha256":"add900896883e60604145a44ada9b8e7fb1013ea91ee1b719b7b3e26a94824ae","source":"checkmarx"}]},"references":[{"type":"ARTICLE","url":"https://medium.com/checkmarx-security/typosquatting-attack-on-requests-one-of-the-most-popular-python-packages-3b0a329a892d"}],"affected":[{"package":{"name":"requuests","ecosystem":"PyPI","purl":"pkg:pypi/requuests"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/requuests/MAL-2022-7440.json"}}],"schema_version":"1.7.3","credits":[{"name":"Checkmarx","contact":["supplychainsecurity@checkmarx.com","https://bit.ly/checkmarx-malicious-packages"],"type":"FINDER"}]}