MAL-2025-191941
Dashboard / Malicious Package / MAL-2025-191941
MAL-2025-191941
Published: 12 Nov 2025Last Modified: 3 Dec 2025
Summary: Malicious code in zakuraweb (PyPI)
Details: Source: kam193 (aa544044c8a113eb904f97650e8132de793d3bab5a7328a3714495e3f6a2283e) Importing the module starts exfiltrating Discord tokens Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-11-morosint Reasons (based on the campaign): - exfiltration-browser-data - exfiltration-credentials
Affected packages
Package
Name: zakuraweb
Purl: pkg:pypi/zakuraweb
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
0.0.1
