MemoryOS
discovered 2026-09-23MemTensor MemOS Python library compromised on 2026-09-23. MemoryOS 2.0.34 was built and uploaded by MemTensor's own release workflow from tag v2.0.34 on unsigned, non-main commits b52958f (author "MemTensor CI Review <[email protected]>", adds six sckit binaries, loader, and in-tree Poetry backend sckit_poetry_build.py) and 41bf5c7 (removes the register() token-capture call). memos/log.py configure_logging() imports memos._stage0.trigger(), which spawns the sckit binary detached with SCKIT_EVENT_TEXT. Wheel grew from 951 KB (2.0.33) to 19 MB. Wheel SHA-256 in versions[]; sdist memoryos-2.0.34.tar.gz SHA-256 92b46d18fc553c494eda714f204459edb74c205bf53b18a9092bcf02c7a6c5be. Last clean version: 2.0.33.
Threat types
Malicious versions
- 2.0.34 · 39ee644406829a4b…
Campaigns
Indicators
- domain c747d139e7e9.skyleen.frcommunicates-with
- domain 73376a079d87.skyleen.frcommunicates-with
- domain d4f77a3a8cb0.skyleen.frcommunicates-with
- domain 10729e014d0e.skyleen.frcommunicates-with
- url https://10729e014d0e.skyleen.fr/eb57efaa7365698fc1e4decc/initial-ci-v2communicates-with
- email [email protected]indicates
- file_path $HOME/.memos/.cache/runtimeindicates
- file_path memos/_stage0.pyindicates
- file_path src/memos/_pypi_bridge.shindicates
- file_path sckit_poetry_build.pyindicates
- sha256 c1b0998347b489582bae7b7f4930f9831d9ef4b6bc150cfd488ee1a43272dd36drops
- sha256 8f647f17a1934679c4095e21bee2b9bd83e28476603758bc91408a0c8443e3b4drops
- sha256 9de0d5b0ca184f71f630be5781d134998883a02d5d7bc65aeb9559d8f9efb364drops
- sha256 5405e330507602e803f7dd6f2a9d4555aec8558ab222b51413594a962da6888adrops
- sha256 16de381deb978744535b10f68fe15165251374b86eef18ffc2c47f61ea673047drops
- sha256 f7c4014e284f3d56c452b8b222a287c54f73dc4a40a7e022e765ac8376362947drops
Techniques
- ttp T1195.002 Compromise Software Supply Chainuses
- ttp T1528 Steal Application Access Tokenuses
- ttp GITHUB_ENV BASH_ENV Injectionuses
- ttp T1059.004 Unix Shelluses
- ttp T1059.006 Pythonuses
- ttp T1480 Execution Guardrailsuses
- ttp T1105 Ingress Tool Transferuses
- ttp T1071.001 Web Protocolsuses
- ttp T1552.001 Credentials In Filesuses
- ttp T1082 System Information Discoveryuses
- ttp T1614 System Location Discoveryuses
- ttp T1573 Encrypted Channeluses
- ttp T1041 Exfiltration Over C2 Channeluses