pypi · Malicious package advisory
Malwarediscord-booster
MAL-2025-6495
Malicious code in discord-booster (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (f561c13e7822efe2d480bce32956c66b8eaabe69e40665997628b7b927e4e763) Code downloads and runs the remote executable. While the current link seems not to work, the previous versions had an embedded infostealer instead. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-05-discord-booster Reasons (based on the campaign): - infostealer - Downloads and executes a remote executable.
Compromised versions (9)
- 0.1
- 0.2
- 0.3
- 0.6
- 0.7
- 0.8
- 0.9
- 0.4
- 0.5
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.