Launch Week Day 1: Announcing Security Design Review
CRITICAL PyPI Malware

Malicious code in llmgenerator (PyPI)

MAL-2026-5770

Published ยท Modified

Description


__

Source: kam193 (1948e85cdc950b3661b64655a2c0cc73708ecf6e409d19a77089e4089864411a)

During installation, the code attempts to download and start a malicious executable.

Likely related to 2025-08-raknet-testing-package.


Category: MALICIOUS - The campaign has clearly malicious intent, like infostealers.

Campaign: 2026-06-easyaillm

Reasons (based on the campaign):

  • Downloads and executes a remote executable.

  • obfuscation

  • malware

Ready to move

Start Securing

Free, no credit card | First findings in minutes