Skip to content
supplychainattack.orgSupply chain attack incident catalog
resolvedcritical

Malicious code in infogram-bot (PyPI)

The infogram-bot package on PyPI contained deliberately malicious code designed to provide remote access, exfiltrate files and credentials, and establish persistence on affected systems. The package was identified as part of the 2026-08-httpz-requests campaign.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
Unknown; depends on installation count and deployment scope
Ecosystems
Attack vectors
Threat actor
Affected entities
  • infogram-botPyPI package containing malicious code

The infogram-bot package published on PyPI contained malicious code that was deliberately created to compromise systems. The package provided Telegram-based remote access capabilities to machines on which it was installed.\n\nThe malicious functionality included remote access trojan (RAT) capabilities, file and credential exfiltration, persistence mechanisms, and obfuscated code. The package communicated via a Telegram bot for command and control.\n\nThe malicious package was identified and attributed to the 2026-08-httpz-requests campaign by the OpenSSF's malicious packages project. The package has been removed from PyPI.\n\nUsers who installed infogram-bot should assume their systems may be compromised and take immediate remediation steps.

Indicators of compromise

Packages
  • infogram-bot

Remediation

  • Immediately uninstall infogram-bot from all systems
  • Assume systems that installed infogram-bot are compromised; perform full security audit and malware scan
  • Rotate all credentials and secrets that may have been exposed
  • Review system logs and network traffic for signs of unauthorized access or data exfiltration
  • Check for persistence mechanisms and unauthorized modifications to system files
  • Monitor affected systems for ongoing malicious activity

Sources

  1. GitHub Advisory GHSA-22rg-qv4f-2j3p · GitHub Advisory Database

Cite this entry

"Malicious code in infogram-bot (PyPI)." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed August 18, 2026; last updated August 18, 2026. https://supplychainattack.org/incident/malicious-code-in-infogram-bot-pypi-pge46y

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. containedcritical

    Malicious code in scrambleeeer (PyPI)

    The PyPI package scrambleeeer contains malicious code that establishes a reverse shell to a hardcoded location, allowing remote command execution on affected systems. The package was identified as part of a malicious campaign and has been documented by the OpenSSF.

    2026 08 ScrambleeerPyPICompromised package
  2. containedcritical

    Malicious code in reqcrypts (PyPI)

    The reqcrypts package on PyPI contains malicious code that implements a hidden backdoor. The package masquerades as an HTTP request library but secretly monitors responses for specific fields and executes their content without user knowledge.

    2026 08 ReqcryptPyPICompromised packageMalicious commit
  3. containedcritical

    Malicious code in boto4 (PyPI)

    A malicious package named boto4 was published to PyPI containing embedded executable code capable of cryptomining, remote command execution, persistence, data exfiltration, and worm-style propagation controlled via Telegram bot. The package was identified and attributed to the 2026-08-boto4 campaign by the OpenSSF.

    2026 08 Boto4PyPICompromised package
  4. containedcritical

    Malicious code in scrambleeer (PyPI)

    The scrambleeer package on PyPI contained malicious code that establishes a reverse shell to a hardcoded location, enabling arbitrary command execution on affected systems. The malicious package was identified and cataloged by the OpenSSF malicious-packages project.

    2026 08 ScrambleeerPyPICompromised package