BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

MemTensor npm, PyPI packages push credential-stealing malware

Compromised MemTensor packages on npm and PyPI deliver Go-based sckit implant stealing credentials to skyleen.fr

  • Compromised MemTensor packages on npm and PyPI delivered the Go-based sckit implant across Windows, Linux, and macOS.
  • Attackers stole publish tokens from MemTensor’s GitHub Actions pipelines and injected malicious versions into both registries.
  • The worm-like implant harvests cloud, source-code, registry, and developer credentials, exfiltrating them to skyleen[.]fr.

On Sep 23, 2026, security researchers reported that unknown threat actors compromised two legitimate MemTensor packages on npm and Python Package Index (PyPI) to distribute a Go-based implant named sckit across Windows, Linux, and macOS. The findings come from Aikido, SafeDep, Socket, and StepSecurity.

- Advertisement -

StepSecurity said malicious npm versions 0.1.21, 0.1.23, and 0.1.25 contain a “hidden Go payload”; the code launches it when the agent gateway starts and whenever the plugin handles a memory-recall event. “The launcher passes the host process environment and, during recall, the user’s prompt text directly to the malicious executable.”

Meanwhile, the PyPI package starts the statically-linked Go binary as soon as the memos module is imported. The implant is a credential-stealing payload that harvests sensitive data from cloud services, source-code platforms, package registries, and developer tools, exfiltrating details to skyleen[.]fr.

According to Socket, targets include npm, PyPI, GitHub, GitLab, AWS, Vault, and SSH secrets, along with credential files, environment variables, API keys, tokens, and connection strings. SafeDep’s analysis traced the breach to publish tokens stolen from MemTensor’s own GitHub Actions release pipelines after the attacker pushed commits that caused workflows to expose npm or PyPI tokens.

SafeDep described sckit as a worm that self-proliferates through GitHub and direct npm and PyPI package publishing, saying, “It collects credentials from developer machines and from CI jobs.” The implant also receives signed tasks from a command-and-control server and contains templates to install itself in npm packages, Python packages, and GitHub Actions workflows; as of writing, it is unclear whether other packages are affected.

- Advertisement -

Consequently, with malicious versions still available for download, administrators should pin the npm package to version 0.1.20 and the PyPI package to version 2.0.33, rotate exposed secrets, kill any sckit process, and block skyleen[.]fr and all subdomains. The plugin is part of MemOS Cloud, which connects the OpenClaw agent runtime to a memory service; StepSecurity noted it sits inside a process that handles user input and may inherit valuable credentials.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Micron stock nears $1,100 as split speculation builds

Micron shares closed at $1,096.16, nearing $1,100, but the company has not announced a...

Bitcoin cools after rally; ZEC, HYPE hit new ATHs

Bitcoin pushed past $86,500 Tuesday with total crypto market cap above $3 trillion, while...

CME Bitcoin Cash Futures Planned, BCH Jumps 30%

CME Group plans to launch Bitcoin Cash futures and Micro Bitcoin Cash futures on...

Next.js Critical Flaw in ImageResponse Allows Server RCE

A critical vulnerability (CVE-2026-94545, CVSS 9.5) in Next.js versions 16.2.0 through 16.3.5 allows remote...

Bitcoin Lightning Gets First Quantum-Proof Defense

East Texas A&M University researchers developed PQLN, the first quantum-proof defense for Bitcoin’s Lightning...

Must Read

Buy Domain With Bitcoin: Top 8 Domain Registrars That Accept Bitcoin And Crypto

You are here because you want to buy a domain with bitcoin, right? If you are looking for domain registrars that accept bitcoin or...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading