MAL-2025-5126

    Dashboard / Malicious Package / MAL-2025-5126

    MAL-2025-5126

    Published: 18 May 2025Last Modified: 19 Mar 2026Aliases: 
    SNYK-PYTHON-READMECOLORAMA-10305013

    Summary: Malicious code in readmecolorama (PyPI)

    Details: Source: kam193 (4f74e374afe61cdaa52e0c651ae413abc94b50cd15de263a9d247de21bfc6fa1) Importing the module starts download and running a remote executable, identified as malware by AVs Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-05-coloramashowtemp Reasons (based on the campaign): - Downloads and executes a remote executable. - malware

    Affected packages

    Package

    Name: readmecolorama

    Purl: pkg:pypi/readmecolorama

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    0.1.0
    MAL-2025-5126 | CVE-DB