RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: 27 Malicious PyPI Packages with Thousands of Downloads Found Targeting IT Experts
Post by: ixsky on
27 Malicious PyPI Packages with Thousands of Downloads Found Targeting IT Experts

An unknown threat actor has been observed publishing typosquat packages to the Python Package Index (PyPI) repository for nearly six months with an aim to deliver malware capable of gaining persistence, stealing sensitive data, and accessing cryptocurrency wallets for financial gain.
The 27 packages, which masqueraded as popular legitimate Python libraries, attracted thousands of downloads,

Source: 27 Malicious PyPI Packages with Thousands of Downloads Found Targeting IT Experts (https://thehackernews.com/2023/11/27-malicious-pypi-packages-with.html)