pypi · Malicious package advisory
Malwareveloxml-cli
MAL-2026-4862
Malicious code in veloxml-cli (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: kam193 (57a2b332595fb95752df25e794528ff2dd610bf3977b8d4abd7574cb0f21cdff) The package advertises fake functionality and exfiltrates the given email and basic information about the host when used. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-05-veloxml-cli Reasons (based on the campaign): - action-hidden-in-lib-usage - The package contains code to exfiltrate basic data from the system, like IP or username. It has a limited risk.
Compromised versions (1)
- 0.1.0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.