Malicious PyPI package ‘pyronut’ backdoored Telegram bots with remote code execution
VPN Central [Unofficial]
March 19, 2026
A malicious Python package called pyronut briefly appeared on PyPI and targeted developers who build Telegram bots with the Pyrogram framework. Security researchers say the package acted like a trojanized copy of pyrogram and installed a hidden runtime backdoor that let an attacker run Python code and shell commands on a victim machine after the […]
The post Malicious PyPI package ‘pyronut’ backdoored Telegram bots with remote code execution appeared first on VPN Central.
Discussion in the ATmosphere