MAL-2025-191830

    Dashboard / Malicious Package / MAL-2025-191830

    MAL-2025-191830

    Published: 2 Dec 2025Last Modified: 3 Dec 2025

    Summary: Malicious code in pulsecord (PyPI)

    Details: Source: kam193 (025d4e33a2037fb9ad36cb4b08b122e4439bb4932b73ac6c6f403609e7e1c09e) This package is prepared for silent execution of a malicious executable, with disabling AV protection. While there is no link to the malicious binary inside, the package shares clear indicators of being part of the 2025-11-discord-selfsbotsx campaign. Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-11-discord-selfsbotsx Reasons (based on the campaign): - Downloads and executes a remote executable. - infostealer - malware - peristence-autorun

    Affected packages

    Package

    Name: pulsecord

    Purl: pkg:pypi/pulsecord

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    1.0.0
    MAL-2025-191830 | CVE-DB