By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: This Malicious PyPI Package Stole Ethereum Private Keys via Polygon RPC Transactions
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > This Malicious PyPI Package Stole Ethereum Private Keys via Polygon RPC Transactions
Tech News

This Malicious PyPI Package Stole Ethereum Private Keys via Polygon RPC Transactions

By Viral Trending Content 2 Min Read
Share
SHARE

Mar 07, 2025Ravie LakshmananMalware / Blockchain

Malicious PyPI Package

Cybersecurity researchers have discovered a malicious Python package on the Python Package Index (PyPI) repository that’s equipped to steal a victim’s Ethereum private keys by impersonating popular libraries.

The package in question is set-utils, which has received 1,077 downloads to date. It’s no longer available for download from the official registry.

“Disguised as a simple utility for Python sets, the package mimics widely used libraries like python-utils (712M+ downloads) and utils (23.5M + downloads),” software supply chain security company Socket said.

“This deception tricks unsuspecting developers into installing the compromised package, granting attackers unauthorized access to Ethereum wallets.”

Cybersecurity

The package aims to target Ethereum developers and organizations working with Python-based blockchain applications, particularly Python-based wallet management libraries like eth-account.

Malicious PyPI Package

Besides embedding the attacker’s RSA public key to be used for encrypting the stolen data and an Ethereum sender account under their control, the library hooks into wallet creation functions like “from_key()” and “from_mnewmonic()” to intercept private keys as they are generated on the compromised machine.

In an interesting twist, the private keys are exfiltrated within blockchain transactions via the Polygon RPC endpoint “rpc-amoy.polygon.technology” in an attempt to resist traditional detection efforts that monitor for suspicious HTTP requests.

“This ensures that even when a user successfully creates an Ethereum account, their private key is stolen and transmitted to the attacker,” Socket said. “The malicious function runs in a background thread, making detection even more difficult.”

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.

You Might Also Like

Europe’s public sector deploying AI faster than it can manage – report

The Best Outdoor Deals From the REI Anniversary Sale 2026

New ‘Pack2TheRoot’ flaw gives hackers root Linux access

Google Pixel Phone eSIM Bug Widely Reported

Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and Persistence

TAGGED: Blockchain, cryptocurrency, Cyber Security, Cybersecurity, Ethereum, Internet, Malware, PyPI, Python, software security, supply chain attack, Threat Intelligence
Share This Article
Facebook Twitter Copy Link
Previous Article #Accelerate Action: International Women’s Day theme 2025
Next Article Michael Saylor pushes US gov’t to purchase up to 25% of Bitcoin supply
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

A call to stop the global housing: World Urban Forum, why it matters?
World News
ZachXBT Claims LAB Insiders Control 95% After $6 Billion Crypto Pump
Crypto
007 First Light’s James Bond Actor Was “Pretty Stunned” to Learn Of His Casting
Gaming News
American Express Expands Centurion Lounge Network
Travel
Spain’s place in global politeness and manners ranking raises eyebrows
World News
Europe’s public sector deploying AI faster than it can manage – report
Tech News
Nvidia surpasses Germany: How the market caps of tech giants compare to top economies
Business

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

A call to stop the global housing: World Urban Forum, why it matters?

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
A call to stop the global housing: World Urban Forum, why it matters?
May 16, 2026
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?