External Publication
Visit Post

Malicious PyPI package ‘pyronut’ backdoored Telegram bots with remote code execution

VPN Central [Unofficial] March 19, 2026
Source
A malicious Python package called pyronut briefly appeared on PyPI and targeted developers who build Telegram bots with the Pyrogram framework. Security researchers say the package acted like a trojanized copy of pyrogram and installed a hidden runtime backdoor that let an attacker run Python code and shell commands on a victim machine after the […] The post Malicious PyPI package ‘pyronut’ backdoored Telegram bots with remote code execution appeared first on VPN Central.

Discussion in the ATmosphere

Loading comments...