-= Per source details. Do not edit below this line.=-
Package automatically starts a Discord bot waiting for instructions to download and start a remote executable
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-09-readosso
Reasons (based on the campaign):
{
"malicious-packages-origins": [
{
"versions": [
"0.1.3",
"0.1.2",
"0.1.0"
],
"modified_time": "2025-09-20T08:25:40.718373Z",
"sha256": "1356b92d6f2c7d60d9cfece6ea97d05e7e9cd006d99a6f2eadf7b62844f42091",
"id": "pypi/2025-09-readosso/readosso",
"source": "kam193",
"import_time": "2025-12-02T22:30:55.523895268Z"
},
{
"versions": [
"0.1.3",
"0.1.2",
"0.1.0"
],
"modified_time": "2025-09-20T08:25:40.718373Z",
"sha256": "67ade73536cb4834ba05b33797c1cadcddbf7d90fc099bd6e53f94b9deec4f66",
"id": "pypi/2025-09-readosso/readosso",
"source": "kam193",
"import_time": "2025-12-02T23:07:18.56080999Z"
},
{
"versions": [
"0.1.0",
"0.1.2",
"0.1.3"
],
"modified_time": "2025-09-20T08:25:40.718373Z",
"sha256": "74cd4ff5c32f6a9b4b0ddfef77eccc52176a567e653ea7e6e3afa72a2bf33343",
"id": "pypi/2025-09-readosso/readosso",
"source": "kam193",
"import_time": "2025-12-30T22:39:04.154783466Z"
}
]
}