PyPI · pypi.org
keepercommander
Clipboard Crypto Steal: clipboard access library paired with cryptocurrency seed/key patterns
Why PkgRadar flagged 18.0.8
| Severity | Signal | Evidence |
|---|---|---|
| high | Clipboard Crypto Steal | clipboard access library paired with cryptocurrency seed/key patterns · keepercommander-18.0.8/keepercommander/commands/connect.py |
| high | Clipboard Crypto Steal | clipboard access library paired with cryptocurrency seed/key patterns · keepercommander-18.0.8/keepercommander/commands/pam_launch/launch.py |
| high | Clipboard Crypto Steal | clipboard access library paired with cryptocurrency seed/key patterns · keepercommander-18.0.8/keepercommander/commands/utils.py |
| high | Webhook Exfil Endpoint | matched "ngrok.app" · keepercommander-18.0.8/keepercommander/service/util/tunneling.py |
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · keepercommander-18.0.8/keepercommander/biometric/platforms/macos/keychain.py |
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · keepercommander-18.0.8/keepercommander/utils.py |
| medium | Credential file access | matched ".ssh/" · keepercommander-18.0.8/keepercommander/plugins/sshkey/sshkey.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
18.0.8 | High risk | 74 | 2026-06-13 |
18.0.7 | Review | 59 | 2026-06-07 |
18.0.6 | Review | 59 | 2026-06-06 |
18.0.5 | Review | 59 | 2026-06-05 |
18.0.4 | Review | 66 | 2026-05-27 |
Campaign attribution
Block this in CI
pkgradar gate --ecosystem pypi keepercommander==18.0.8