Supply-chain threat intelligence
Risk score
92
Indexed incident for polydata-analytics (pypi).
-= Per source details. Do not edit below this line.=-
The code attempts to monitor the clipboard and replace copied cryptocurrency addresses, as well as establish persistence.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2026-05-polymarket-data-fetcher
Reasons (based on the campaign):
peristence-autorun
obfuscation
crypto-related
The package contains code to detect if it is running in a sandbox environment.
clipboard-modify
persistence
Affected versions
Timeline