File tree Expand file tree Collapse file tree 1 file changed +21
-0
lines changed
crates/polymarket-client-sdks Expand file tree Collapse file tree 1 file changed +21
-0
lines changed Original file line number Diff line number Diff line change 1+ ``` toml
2+ [advisory ]
3+ id = " RUSTSEC-0000-0000"
4+ package = " polymarket-client-sdks"
5+ date = " 2026-02-13"
6+ expect-deleted = true
7+
8+ [versions ]
9+ patched = []
10+ ```
11+
12+ # ` polymarket-client-sdks ` was removed from crates.io for malicious code
13+
14+ It appeared to be typosquatting existing crate
15+ [ ` polymarket-client-sdk ` ] ( https://crates.io/crates/polymarket-client-sdk ) (` sdks ` vs ` sdk ` )
16+ and attempting to steal credentials from local files.
17+
18+ The malicious crate had 1 version published on 2026-02-09 and had been downloaded only 33 times.
19+ There were no crates depending on this crate on crates.io.
20+
21+ Thanks to Roland Peelen for finding and reporting this to the crates.io team!
You can’t perform that action at this time.
0 commit comments