News
With Chainguard Libraries for Python, Chainguard delivers malware protection for one of the most critical and vulnerable parts of the supply chain — the language dependencies that developers ...
The Infos3c Grabber Stealer specialises in stealing sensitive information such as passwords, cryptocurrency wallets, gaming accounts, and Discord/Telegram data. It also has capabilities to capture ...
Hackers are once again targeting Python developers involved in the blockchain industry in an attempt to distribute malware and steal tokens.
For the second time since March, a cybersecurity firm has discovered troubling malware software packages uploaded to the Python Package Index platform.
A threat actor has uploaded to the PyPI (Python Package Index) repository three malicious packages that carry code to drop info-stealing malware on developers' systems.
The malware loads an XMRig Miner into memory using a known Linux fileless technique.
The Python Package Index (PyPI) has temporarily suspended user registration and the creation of new projects to deal with an ongoing malware campaign.
Hosted on MSN8mon
Popular Python AI library hacked to deliver malware - MSN
A PyPI package for an AI model was compromised and used to deliver malware Victims were getting XMRig, a popular cryptominer, installed The attack has since been addressed, but users warned to be ...
Security researchers have identified a new cyber-threat targeting publicly exposed instances of the Docker Engine API. In this campaign, attackers exploit misconfigurations to deploy a malicious ...
Kaspersky claims malware also steals card dataSecurity researchers have discovered yet another supply chain attack campaign using malicious npm packages, this time targeting Discord users. Kaspersky ...
These packages deploy a piece of Python malware called InvisibleFerret, capable of exfiltrating sensitive data from cryptocurrency wallet browser extensions.
The Infos3c Grabber Stealer specialises in stealing sensitive information such as passwords, cryptocurrency wallets, gaming accounts, and Discord/Telegram data. It also has capabilities to capture ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results