MAL-2026-254
Dashboard / Malicious Package / MAL-2026-254
MAL-2026-254
Published: 14 Jan 2026Last Modified: 14 Jan 2026
Summary: Malicious code in hairest (PyPI)
Details: Source: kam193 (6a47476109391081ac326c65a5624df44ba19f7e2597aaeffa47552a053e9773) Package collects and exfiltrates Discord credentials from multiple sources Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers. Campaign: 2025-06-soupclaw Reasons (based on the campaign): - exfiltration-generic - exfiltration-env-variables - exfiltration-browser-data - exfiltration-credentials
Affected packages
Package
Name: hairest
Purl: pkg:pypi/hairest
Affected ranges
Type: N/A
Events:
Introduced- None
Fixed -None
Affected versions
2.1.0
