Supply-chain threat intelligence

Incident detail

criticalpypi·credential theft·github

Malicious code in zakuraweb (PyPI)

zakuraweb

Risk score

92

AI summary

Indexed incident for zakuraweb (pypi).

Description

Importing the module starts exfiltrating Discord tokens


Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2025-11-morosint

Reasons (based on the campaign):

  • exfiltration-browser-data

  • exfiltration-credentials


Credit: OpenSSF (source)

Technical details

Indicators

  • ghsa
    95%

Timeline

  1. Advisory published
  2. Indexed by ThreatPkg

Related incidents