Nov. 17, 2023, 9:56 a.m. | info@thehackernews.com (The Hacker News)

The Hacker News thehackernews.com

An unknown threat actor has been observed publishing typosquat packages to the Python Package Index (PyPI) repository for nearly six months with an aim to deliver malware capable of gaining persistence, stealing sensitive data, and accessing cryptocurrency wallets for financial gain.
The 27 packages, which masqueraded as popular legitimate Python libraries, attracted thousands of downloads,

actor aim cryptocurrency cryptocurrency wallets data deliver malware downloads experts financial found malicious malware package packages persistence popular publishing pypi pypi packages python python package python package index repository sensitive sensitive data stealing targeting threat threat actor wallets

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)