Be careful when fetching a script from GitHub
by baalware - Friday June 30, 2023 at 06:30 AM
#11
thanks, good catch
Reply
#12
Nice catch
Reply
#13
oh my god, this is unacceptable, GitHub should not do this
Reply
#14
thanks for the warning! it is very useful to remind to ourselves the basics sometimes
Reply
#15
(Jun 30, 2023, 06:30 AM)baalware Wrote:
Whoever keeps fetching code from GitHub, beware! I just found, within an import created two days ago, a thief of 1801 lines of code that steals everything from your computer, including your bitcoins. From what I saw, the import was present in 16 repositories.

The information was being sent to a Discord webhook, and the entire script within the import was encrypted using the Fernet module. So, I created a small script to decrypt it since the key was available within the import.
.
Name of the import with the malicious script.
import pythoncryptolibraryV2

can you send me the webhooks please , i want to spam and delete it

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Scamming (Pongo is a faggot)
Reply
#16
thanks for the warning. that's why i never run any shady scripts from git lol
Reply
#17
Thank you for spreading awareness.
Reply
#18
thanks for sharing
Reply
#19
NICE INFO BRO. THIS IS WHY WHOEVER TAKE AN SOURCE FROM OPEN SOURCE PLATFORM NEED TO FULLY UNDERSTAND WHAT THEY BRING TO THEIR COMPUTER...
Reply
#20
Hah, github doesnt always mean its legit. Thanks
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  DarkGPT Tutorial Easy idontknowmyname 188 8,222 3 hours ago
Last Post: tomyss67
  STOP PAYING FOR CAPTCHA SERVICES!!! UNLIMITED CAPTCHA SOLVER TUTORIAL HASBULLA 87 14,381 7 hours ago
Last Post: zedfghjytgfvbhgfvc
  WormGPT? D3N1S 259 41,587 11 hours ago
Last Post: vx3n
  0day-Mari Bot Godfather1 77 7,393 Yesterday, 09:30 AM
Last Post: Diezxx
  [2026] Bypass AV / EDR Spearr 63 1,353 May 07, 2026, 07:19 PM
Last Post: AKASHIC

Forum Jump:


 Users browsing this forum: 1 Guest(s)