News

Malicious dbgpkg package on PyPI poses as a debugging utility but acts as a delivery mechanism for a stealthy backdoor ...
An earlier example of malicious software packages was uploaded to the Python Package Index platform in March ... the unsuspecting users called specific functions embedded in the software packages.
Researchers found three malicious PyPI packages, two targeting bitcoin developers, and one WooCommerce stores Two are designed to steal data, and the third to test for valid credit cards All three ...
More than 400 malicious packages were recently uploaded to PyPI (Python Package Index), the official code ... the new packages write function and variable identifiers in what appear to be random ...
A malicious package named 'pycord-self' on the Python package index (PyPI) targets Discord ... authentication protection is active. The second function of the malicious package is to set up ...
A malicious Python Package Index (PyPI) package named "set-utils" has been stealing Ethereum private keys through intercepted wallet creation functions and exfiltrating them via the Polygon ...
A software security engineer has identified 12 Python libraries uploaded on the official Python Package Index (PyPI) that contained malicious code. The 12 packages have been discovered in two ...