pypi · Malicious package advisory
Malwarequicklytookerv
MAL-2026-3364
Malicious code in quicklytookerv (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (eeb02e3ddf9f61661d72bac1e244227aa8b6a8a88ab1226a521cc7aa48d5da37) The package silently exfiltrates screenshots and basic data. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-05-randomchoicemas Reasons (based on the campaign): - spyware-like - exfiltration-generic - action-hidden-in-lib-usage
Compromised versions (2)
- 1.0.0
- 1.0.1
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.