Snyk has a proof-of-concept or detailed explanation of how to exploit this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using all malicious instances of the Pyward
package.
Pyward is a malicious package. This package implements a multi-stage payload delivery and comprehensive data extraction capabilities while using a multitude of techniques to evade detection.
IoC:
hxxps[:]//rentry[.]co/pvtapi/raw
hxxps[:]//api[.]telegram[.]org/bot6470601001:AAFb_C7msjRCEh8jwo_Q74aujh1TXUP0CsQ/sendMessage?chatid=1975115969
hxxps[:]//github[.]com/Hexa-c/Hexa-Grabber