pypi · Malicious package advisory
Malwareroboat-util
MAL-2026-2142
Malicious code in roboat-util (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (869ea4b94181bc5ef23562a4d749b462fb7079112cca74072ee9036fb397921f) During installation, a malicious executable is downloaded and run. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-03-rowrap Reasons (based on the campaign): - Downloads and executes a remote malicious script. - malware
Compromised versions (2)
- 2.30
- 2.40
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.