Supply-chain threat intelligence

Incident detail

criticalpypi·credential theft·github

Malicious code in yeahmankema (PyPI)

yeahmankema

Risk score

92

AI summary

Indexed incident for yeahmankema (pypi).

Description

Package exfiltrates screenshots and network information to a hardcoded target.


Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-05-crayrandomiz

Reasons (based on the campaign):

  • exfiltration-generic

  • obfuscation

  • spyware-like


Credit: OpenSSF (source)

Technical details

Indicators

  • ghsa
    95%

Timeline

  1. Advisory published
  2. Indexed by ThreatPkg

Related incidents