Supply-chain threat intelligence
Risk score
92
Indexed incident for xxoo-bale (pypi).
The package contains code to install remotely stored malware and ensure its persistence. The code is not triggered automatically; it requires a separate trigger.
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-07-cas-base
Reasons (based on the campaign):
Downloads and executes a remote executable.
malware
persistence
Indicators
Timeline