-= Per source details. Do not edit below this line.=-
Package collects and exfiltrates Discord credentials from multiple sources
Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.
Campaign: 2025-06-soupclaw
Reasons (based on the campaign):
exfiltration-generic
exfiltration-env-variables
exfiltration-browser-data
exfiltration-credentials
{
"malicious-packages-origins": [
{
"source": "kam193",
"import_time": "2026-01-14T19:36:51.02790394Z",
"sha256": "6a47476109391081ac326c65a5624df44ba19f7e2597aaeffa47552a053e9773",
"id": "pypi/2025-06-soupclaw/hairest",
"modified_time": "2026-01-14T19:29:48.77505Z",
"versions": [
"2.1.0",
"2.3.2",
"2.3.3"
]
},
{
"source": "kam193",
"import_time": "2026-01-14T20:07:05.504730527Z",
"sha256": "c7c0e852e1773d04870f0afdcaf0919506319def28a00dc0f378db9c002f08b7",
"id": "pypi/2025-06-soupclaw/hairest",
"modified_time": "2026-01-14T19:42:05.111638Z",
"versions": [
"2.1.0",
"2.3.2",
"2.3.3"
]
}
]
}