MAL-2026-10119

    Dashboard / Malicious Package / MAL-2026-10119

    MAL-2026-10119

    Published: 10 Jul 2026Last Modified: 10 Jul 2026

    Summary: Malicious code in sankislayer (PyPI)

    Details: Source: kam193 (74a2d321c0a35b52bc8ba63b8c13dd8e883d63419ed8aa304b648d3599f98ad8) Obfuscated code provides a Telegram bot to join a spamming botnet. Centrally controlled bots can be used to spam other Telegram channels (via looped posting, changing photos, or titles). Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-07-sankislayer Reasons (based on the campaign): - obfuscation - abusing-3rd-api - target:telegram

    Affected packages

    Package

    Name: sankislayer

    Purl: pkg:pypi/sankislayer

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    1.0.0
    MAL-2026-10119 | CVE-DB