Supply-chain threat intelligence

Incident detail

criticalpypi·malware·osv

Malicious code in fastercoding (PyPI)

fastercoding

Risk score

92

AI summary

Indexed incident for fastercoding (pypi).

Description

The package contains code to download and run a malicious executable. The executable contains a remote access trojan controlled via Telegram bot, with capabilities like a keylogger, screen recording, command execution. It also attempts to gain persistence via startup registry keys.


Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-06-fastercode

Reasons (based on the campaign):

  • Downloads and executes a remote executable.

  • peristence-autorun

  • uses-telegram-bot

  • keylogger

  • rat

  • spyware-like

Technical details

Affected versions

=1.0.0

Indicators

  • affected version=1.0.075%

Timeline

  1. Advisory published
  2. Indexed by ThreatPkg

Related incidents