Skip to content
supplychainattack.orgSupply chain attack incident catalog

2026 03 Pipipipi supply chain incidents

1 confirmed incident publicly associated with this group. Attribution reflects what the cited sources state; it is recorded for filtering, not asserted by this site.

  1. resolvedcritical

    Malicious code in 7miners (PyPI)

    The 7miners package on PyPI contained malicious code designed to clone legitimate libraries with modifications. The package downloads and executes arbitrary remote code via Telegram as a command-and-control channel.

    2026 03 PipipipiPyPICompromised packageTyposquatting