Malicious code in m5tlprovetomegz (PyPI)
Malware
Published
Jul 21, 2026
to the GitHub Advisory Database
•
Updated Jul 21, 2026
Description
Published to the GitHub Advisory Database
Jul 21, 2026
Reviewed
Jul 21, 2026
Last updated
Jul 21, 2026
Source: kam193 (41041b6e55e23e7b8d40be5bb95a75fdba5b64cb9524c86054deabcd2177e459)
Importing the module starts downloading and executing a file recognized as malicious by AVs
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-07-m5tlprovetomegz
Reasons (based on the campaign):
malware
Downloads and executes a remote executable.
Credit: OpenSSF (source)
References