pypi
Malicious discordnv @0.8.0
Vulnerability report · Last retrieved from osv.dev July 24, 2026 at 11:25 PM UTC
OSV ID
MAL-2026-11050
Ecosystem
pypi
Summary
The package exfiltrates Roblox cookies and Discord tokens from the victim machine. --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-06-spaysrbdata Reasons (based on the campaign): - infostealer
Source: kam193 (d28ded2ca28c0182385e9dccf5939e883fd5f18dfa702ca912429270a92f3646)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.