pypi · Malicious package advisory
Malwarecolorina
MAL-2025-3441
Malicious code in colorina (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (5280fa2df728b98c1eda6d86d4b0fc233d4bd0d58ac17160427e16f1bb154081) Using the "color" function will exfiltrated data like discord tokens, browser-saved passwords and Minecraft access tokens --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-04-colorina Reasons (based on the campaign): - exfiltration-browser-data - action-hidden-in-lib-usage
Compromised versions (11)
- 0.1.3
- 0.1.6
- 0.2.0
- 0.2.2
- 0.2.3
- 0.2.4
- 0.2.5
- 0.1.0
- 0.1.2
- 0.1.4
- 0.1.5
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.