---
id: MAL-2026-3411
title: Malicious code in web3-py-checksum (PyPI)
summary: Malicious code in web3-py-checksum (PyPI)
severity: none
vendor: web3-py-checksum
product: web3-py-checksum
ecosystem: pip
affected:
  - web3-py-checksum
published: '2026-05-10'
updated: '2026-07-09'
source: OSV
sourceUrl: 'https://osv.dev/vulnerability/MAL-2026-3411'
references:
  - url: 'https://bad-packages.kam193.eu/pypi/package/web3-py-checksum'
tags:
  - osv
  - pip
ingestedAt: '2026-07-09T11:56:19.292Z'
---

## Overview


---
_-= Per source details. Do not edit below this line.=-_

## Source: kam193 (4b2052172f5c854b2e91f6bdc9336a97469cd161372621a1880d9cd1e3ad426a)
The code silently exfiltrates the private key of a crypto account.


---

Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.


Campaign: 2026-05-old-web3-py-checksum


Reasons (based on the campaign):


 - crypto-related


 - exfiltration-crypto


## Affected packages

- `web3-py-checksum`

## Remediation

Refer to the advisory for the patched release.
