hermes-px
hermes-px is identified in the SafeDep analysis "Malicious hermes-px on PyPI Steals AI Conversations". >-
discovered 2026-04-06
Threat types
credential_stealerdata_exfiltration
Malicious versions
- 0.1.0
Campaigns
Indicators
- domainprod.universitecentrale.netcommunicates-with
- domainurlvoelpilswwxkiosey.supabase.cocommunicates-with
- domainchat.universitecentrale.netcommunicates-with
- ipv4146.0.0.0communicates-with
- sha1333e5b7c412736685b3c296a58663a7763744949indicates
- sha14c385d4376314b24793b6b4e3526783f72383667indicates
- sha12a6e3839766d215e40785f6b277dc2a34d4e2f71indicates
- sha1442158353951337678587c236567276e767a3d39indicates
- sha13f3922326c646a2d2f78703073224a3e4a366761indicates
- sha13c335f732e6f5c3b48665745325c572b25724a60indicates
- sha12968623b3a4c275d544149674522663559617b74indicates
Techniques
- ttpT1195.001 Supply Chain Compromise: Compromise Software Dependencies and Development Toolsuses
- ttpT1059.006 Command and Scripting Interpreter: Pythonuses
- ttpT1552.001 Unsecured Credentials: Credentials In Filesuses
- ttpT1041 Exfiltration Over C2 Channeluses
- ttpT1071.001 Application Layer Protocol: Web Protocolsuses
- ttpT1102 Web Serviceuses
