#python-package-index

[ follow ]
#cybersecurity
fromThe Hacker News
3 months ago
Bootstrapping

Malicious Python Packages on PyPI Downloaded 39,000+ Times, Steal Sensitive Data

Malicious packages in PyPI aim to steal sensitive information and commit fraud.
Researchers discovered packages impersonating legitimate libraries that lead to data exfiltration.
fromThe Hacker News
4 months ago
Privacy professionals

Malicious PyPI Packages Stole Cloud Tokens-Over 14,100 Downloads Before Removal

Malicious campaigns targeting PyPI users via fake libraries pose serious security risks, highlighting the importance of vigilance in software development.
Bootstrapping
fromThe Hacker News
3 months ago

Malicious Python Packages on PyPI Downloaded 39,000+ Times, Steal Sensitive Data

Malicious packages in PyPI aim to steal sensitive information and commit fraud.
Researchers discovered packages impersonating legitimate libraries that lead to data exfiltration.
Privacy professionals
fromThe Hacker News
4 months ago

Malicious PyPI Packages Stole Cloud Tokens-Over 14,100 Downloads Before Removal

Malicious campaigns targeting PyPI users via fake libraries pose serious security risks, highlighting the importance of vigilance in software development.
Information security
fromThe Hacker News
7 months ago

Ultralytics AI Library Compromised: Cryptocurrency Miner Found in PyPI Versions

A software supply chain attack compromised two versions of the ultralytics library, delivering a cryptocurrency miner through malicious code.
Users are advised to upgrade to the latest security-fixed version of the ultralytics library.
[ Load more ]