National Cyber Warfare Foundation (NCWF)

Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads


0 user ratings
2025-05-13 15:37:55
milo
Developers
Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that purports to be an application related to the Solana blockchain, but contains malicious functionality to steal source code and developer secrets.
The package, named solana-token, is no longer available for download from PyPI, but not before it was downloaded 761 times. It was first



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/05/malicious-pypi-package-posing-as-solana.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Developers



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.