Skip to content
supplychainattack.orgSupply chain attack incident catalog

2025 10 Wangzhou183 supply chain incidents

1 confirmed incident publicly associated with this group. Attribution reflects what the cited sources state; it is recorded for filtering, not asserted by this site.

  1. resolvedcritical

    Malicious code in abhamzufu (PyPI)

    The PyPI package abhamzufu contained malicious code that executed during installation via a compromised setup.py install command override. The package had no legitimate purpose and was part of the 2025-10-wangzhou183 campaign.

    2025 10 Wangzhou183PyPICompromised package