A malware campaign dubbed ChocoPoC used fake or trojanized GitHub proof-of-concept exploit repositories for newly disclosed CVEs to infect cybersecurity researchers, penetration testers, and bug hunters. Researchers at Sekoia and YesWeHack said the visible exploit code often appeared benign, while the real payload was introduced through malicious PyPI dependencies including frint and skytext. The package chain decrypted and executed code that fetched the final Python-based remote access trojan from a Mapbox dataset, and investigators linked at least seven repositories to the operation. The activity appears to have relied largely on compromised accounts to publish the poisoned packages and repositories, with skytext alone drawing roughly 2,400 downloads, mostly on Linux systems.
Once activated, ChocoPoC provided remote shell and Python execution, stole browser credentials and files, uploaded data, enumerated processes, and collected host details such as network configuration and shell history. The malware was designed to evade casual review and simple sandboxing by delaying activation until the PoC was run, while also using DNS-over-HTTPS to resolve infrastructure and 91.132.163.78 for larger uploads. Investigators said related activity may date back to late 2025 through earlier packages such as slogsec and logcrypt.cryptography, raising concern that compromises of researcher workstations could create downstream supply-chain risk for trusted security tooling and frameworks.

Trace attribution and downstream blast radius.
6 events from the most recent confirmed update back to the earliest known activity.
Researchers said activity related to the ChocoPoC campaign appears to date back to late 2025, when earlier packages such as slogsec and logcrypt.cryptography were used. This indicates the operation predates the newly identified frint/skytext package chain.
Sekoia linked multiple waves of malicious repositories and packages through shared infrastructure and coding patterns, assessing that the ChocoPoC operation has been active since at least 2023. This pushes the known start of the campaign significantly earlier than previously documented late-2025 activity.
Sekoia assessed with high confidence that the attackers primarily relied on compromised accounts to publish the malicious PyPI packages and proof-of-concept repositories. This attribution detail explains how the campaign seeded trusted-looking developer resources.
The malicious PyPI package skytext was observed to have roughly 2,400 downloads, mostly on Linux systems. This provided a measurable indicator of the campaign's reach among likely researcher targets.
Researchers linked at least seven fake or malicious PoC exploit repositories to the ChocoPoC operation. The repositories presented benign-looking exploit code while triggering installation of malicious dependencies when run.
Sekoia and YesWeHack identified a campaign that used weaponized GitHub proof-of-concept repositories for newly disclosed CVEs to target cybersecurity researchers and penetration testers. The repositories relied on malicious PyPI dependencies including frint and skytext to deliver the Python-based ChocoPoC remote access trojan.
Vulnerabilities, threat actors, malware, products, organizations, breaches, and observables Mallory has linked to this story. Indicator values are masked here and available in full in the app.
Indicator values are masked on this page. See the values in Mallory Domains, IPs, hashes, and URLs are exportable to your SIEM.
See attribution and downstream blast radius, and whether this package or vendor reaches your builds.
8 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcecybersecuritynews.com
Open sourcethehackernews.com
Open sourcelinuxsecurity.com
Open sourceyeswehack.com
Open sourcebleepingcomputer.com
Open sourcesekoia.com
Open sourceblog.google
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.