Warning: Malicious Python Packages Found

4 replies 59 views
0xLynxMember
Posts: 113 · Reputation: 205
#1Sep 23, 2025, 03:04 AM
Heads up guys! If you're dealing with Python packages for Bitcoin or e-commerce, be cautious! There are two shady packages out there, bitcoinlibdbfix and bitcoinlib-dev, that claim to fix bugs in the real bitcoinlib, but they're actually trying to steal your info. Also, watch out for disgrasya, which has a nasty carding script for WooCommerce!
5 Reply Quote Share
gang2015Member
Posts: 682 · Reputation: 62
#2Sep 23, 2025, 08:58 AM
Yeah, this stuff isn’t new. Using library distributions to spread malware has been a common tactic. But seriously, disgrasya has over 37,000 downloads? Google it, and you end up on some language site instead of anything programming-related. So sketchy.
2 Reply Quote Share
0xLynxMember
Posts: 113 · Reputation: 205
#3Sep 23, 2025, 10:25 AM
Totally agree. And there's not much we can do to prevent this type of stuff. The good thing is that PyPI acted fast and removed disgrasya once it was flagged as malicious. But Google's bots aren't finding anything now, so that might help.
4 Reply Quote Share
Posts: 17 · Reputation: 52
#4Sep 25, 2025, 01:15 AM
True, but it just shows how weak PyPI's review processes really are against these supply chain attacks. We definitely need better mechanisms for software distribution to avoid these issues.
0 Reply Quote Share
gr3g.4ltFull Member
Posts: 58 · Reputation: 419
#5Sep 25, 2025, 02:11 AM
Yeah, all three of these packages are flagged and gone from PyPI now. When messing with crypto or finance-related stuff, a few precautions can save you a lot of trouble. Always check if the repo is open source, look for stars, forks, and issues, and see when it was last updated. Sites like library.io can help spot reliable packages.
3 Reply Quote Share

Related topics