Python 

Advanced Espionage Tool  Adware  AI  Android  APP  APPX file  ATM Malware  Backdoor  Banking  Bookit  Bot  BotNet  Code-injection  CoinMiners  Crypt  Cryptocurrency  Cryptojacking  CyberSpy  Data Wiper  DDoS  DEAMON  Destructive Malware  DNS Backdoor  Downloader  Driver  Droper  EDR and AV Killer  ELF   ENGINE  Espionage  Exploit  Families  Fileless  FRAMEWORK  FUD Engine  Go  GPT  GPU  GRU Malware  HTML  ICS  InfoStealer  Injector  iOS  IoT  IRC  ISS   Java  JavaScipt  JSON  Keylogger  Killer  Kit  LINUX  Loader  Maas  MacOS  Macro  Malware  Military Malware  Miner  Mobil  MultiOS  nmp  OS  OSX   OT malware  P2P virus  Password STEALER  Pay-per-install (PPI)  PoS Malware  PowerShell  Program  PyPI   Python  QR trojan  Ransom  Raspberry  RAT  Roque  Rootkit  SMS  Spy  Spyware  SQL Malware  Stealer  SymbOS  Tool  Trojan  TV  UEFI bootkit  USB  Utility  VBA Macro  VBE  VBS  VHD malware  Virus  Vishing toolset  VMware ESXi  Windows  Wipper  WM virus  Worm  Wrapper 

03.09.26 BraZetsu Group-IB uncovers BraZetsu, a new Python-based Windows malware that serves as a master toolkit for Initial Access Brokers and powers a unique, AI-enhanced underground marketplace for commercializing compromised Iberian and Latin American targets.  MALWARE PYTHON
31.08.26 BraZetsu Group-IB uncovers BraZetsu, a new Python-based Windows malware that serves as a master toolkit for Initial Access Brokers and powers a unique, AI-enhanced underground marketplace for commercializing compromised Iberian and Latin American targets.  MALWARE PYTHON
18.07.26 ChainVeil Sequel to ChainVeil npm Malware Targets Vite Ecosystem MALWARE PYTHON
12.05.26 Mini Shai-Hulud Mini Shai-Hulud Is Back: npm Worm Hits over 160 Packages, including Mistral and Tanstack MALWARE PYTHON
07.05.26 ZiChatBot  While these wheel packages do implement the features described on their PyPI web pages, their true purpose is to covertly deliver malicious files.  MALWARE Python
23.04.26 CanisterSprawl CanisterSprawl: pgserve Compromised on npm: Malicious Versions Harvest Credentials and Exfiltrate to a Decentralized ICP Canister MALWARE PYTHON

15.03.26

PhantomRaven

The Return of PhantomRaven: Detecting Three New Waves of npm Supply Chain Attacks

MALWARE

PYTHON

28.01.26

Python RAT

Malicious PyPI Packages spellcheckpy and spellcheckerpy Deliver Python RAT

MALWARE

PYTHON

21.01.26

Spread rat

Open-Source Python Script Drives Social Media Phishing Campaign

MALWARE

PYTHON

17.01.26

SOLYXIMMORTAL

EXECUTIVE SUMMARY SolyxImmortal is a Python-based Windows information-stealing malware that combines credential theft, document
harvesting, keystroke logging, screen surveillance,

MALWARE

PYTHON

31.12.25

Shai Hulud

Shai Hulud strikes again - The golden path

MALWARE

PYTHON

20.09.25

Shai-Hulud

"Shai-Hulud" Worm Compromises npm Ecosystem in Supply Chain Attack (Updated September 19)

MALWARE

PYTHON

02.09.25

Nodemailer

Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions

MALWARE

Python

28.10.24

BeaverTail

Tenacious Pungsan: A DPRK threat actor linked to Contagious Interview

MALWARE

PYTHON

08.09.24

COVERTCATCH

North Korean Threat Actors Deploy COVERTCATCH Malware via LinkedIn Job Scams

MALWARE

Python

30.05.24

PyPI crypto-stealer

PyPI crypto-stealer targets Windows users, revives malware campaign

MALWARE

Python

07.05.24

WIREFIRE

Technical Deep Dive: Understanding the Anatomy of a Cyber Intrusion

MALWARE

Python

18.03.24

MASEPIE

Compromised Routers Are Still Leveraged as Malicious Infrastructure to Target Government Organizations in Europe and the Caucasus

MALWARE

Python

01.02.24

QUIETBOARD

Evolution of UNC4990: Uncovering USB Malware's Hidden Depths

MALWARE

Python

29.01.24

WhiteSnake Stealer 

Info Stealing Packages Hidden in PyPI

MALWARE

Python

09.11.23

BlazeStealer

In the realm of software development, open-source tools and packages play a pivotal role in simplifying tasks and accelerating development processes.

MALWARE

Python

13.09.23

MrTonyScam

Hackers Deploy Python-Based Stealer via Facebook Messenger

MALWARE

Python

29.08.23

Rust 

Phylum routinely identifies malware and other software supply chain attacks targeting high-value, critical assets: an organization’s software developers. 

MALWARE

Python

13.07.23

PyLoose 

PyLoose is a newly discovered Python-based fileless malware targeting cloud workloads.

MALWARE

Python

19.05.23

KEKW

Stealer with Clipper Making Rounds in a Mass Campaign

MALWARE

Python

26.04.23

Telemiris

Tomiris called, they want their Turla malware back

MALWARE

Python