pypi
Maliciousmultithreadedexecution@1.0.0
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 9:42 AM UTC
OSV ID
MAL-2025-191798
Ecosystem
pypi
Summary
Once run, package downloads and installs an infostealer --- Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-11-discord-selfsbotsx Reasons (based on the campaign): - Downloads and executes a remote executable. - infostealer - malware - peristence-autorun
Source: kam193 (3248950b032e1381ddc79d43dfdba8fb6dccce4b1afafd5825e560d793b3bd09)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.