Skip to content
supplychainattack.orgSupply chain attack incident catalog

2026 06 Easyaillm supply chain incidents

1 confirmed incident publicly associated with this group. Attribution reflects what the cited sources state; it is recorded for filtering, not asserted by this site.

  1. resolvedcritical

    Malicious code in aaaazzzzaz (PyPI)

    The PyPI package aaaazzzzaz contained malicious code that downloads and executes a remote executable during installation. The package was part of the 2026-06-easyaillm campaign and has been identified and removed.

    2026 06 EasyaillmPyPICompromised package