MAL-2026-1084
Dashboard / Malicious Package / MAL-2026-1084
MAL-2026-1084
Published: 28 Feb 2026Last Modified: 28 Feb 2026
Summary: Malicious code in socketxio (PyPI)
Details: Source: kam193 (0ebdf2a14543a49aa2f1b1fdeb5a713a43da8326a370249ca370d9023283fb31) Using the provided function results in exfiltrating Discord tokens to a hardcoded location Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-02-old-socketxio Reasons (based on the campaign): - exfiltration-credentials - action-hidden-in-lib-usage
Affected packages
Package
Name: socketxio
Purl: pkg:pypi/socketxio
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
1.5
