MAL-2025-191852
Dashboard / Malicious Package / MAL-2025-191852
MAL-2025-191852
Published: 20 Sept 2025Last Modified: 31 Dec 2025
Summary: Malicious code in readosso (PyPI)
Details: Source: kam193 (67ade73536cb4834ba05b33797c1cadcddbf7d90fc099bd6e53f94b9deec4f66) Package automatically starts a Discord bot waiting for instructions to download and start a remote executable Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-09-readosso Reasons (based on the campaign): - Downloads and executes a remote executable.
Affected packages
Package
Name: readosso
Purl: pkg:pypi/readosso
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
0.1.3
0.1.2
0.1.0
