Skip to content
supplychainattack.orgSupply chain attack incident catalog

2025 11 Morosint supply chain incidents

1 confirmed incident publicly associated with this group. Attribution reflects what the cited sources state; it is recorded for filtering, not asserted by this site.

  1. resolvedcritical

    Malicious code in zakuraweb (PyPI)

    The zakuraweb package on PyPI contained malicious code that exfiltrates Discord tokens upon import. The package was identified as part of the 2025-11-morosint campaign and has been documented by the OpenSSF malicious packages repository.

    2025 11 MorosintPyPICompromised package