MAL-2026-11424

    Dashboard / Malicious Package / MAL-2026-11424

    MAL-2026-11424

    Published: 31 Jul 2026Last Modified: 31 Jul 2026

    Summary: Malicious code in telerape (PyPI)

    Details: Source: kam193 (21e8fc4f3dd969ec103ff1cb8a5bdba0d465bffffabe2615bc38d8e00606cffa) Package places a reverse shell in the PTH file. In analyzed versions, the target was on localhost. Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2026-07-telerape Reasons (based on the campaign): - The package contains code to create a reverse shell, allowing an attacker to execute any commands on the victim's machine. - abuses-pth

    Affected packages

    Package

    Name: telerape

    Purl: pkg:pypi/telerape

    Affected ranges

    Type: N/A

    Events:

    Introduced- None
    Fixed -None

    Affected versions

    0.0.0.dev0
    MAL-2026-11424 | CVE-DB