pypi · Malicious package advisory
Malwareblackspammerbd-tool
MAL-2025-2593
Malicious code in blackspammerbd-tool (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: oracle-using-macaron (49490144c72d79e7bb37921a87c52011d6ce935fd7d031e2a4d3e4835e98a399) This package is designed for remote control and data exfiltration, and could be used for malicious purposes such as spying, unauthorized access, data theft, or for distributing more malware.
Compromised versions (1)
- 1.0.0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.