Feb. 24, 2024, 2:03 p.m. | Balaji N

Cyber Security News cybersecuritynews.com

Researchers identified a sophisticated cyberattack through a dormant Python Package Index (PyPI) package named Django-log-tracker, which was unexpectedly updated to deploy the NovaSentinel stealer malware. This discovery highlights a significant threat to the software supply chain, emphasizing the need for heightened security measures among developers and organizations. The django-log-tracker package, initially published in April 2022, […]


The post Hijacked PyPI Package Installs NovaSentinel Stealer on Windows appeared first on Cyber Security News.

cyberattack deploy developers discovery django hijacked log malware organizations package pypi pypi package python python package python package index researchers security security measures software software supply chain stealer supply supply chain threat tracker windows

More from cybersecuritynews.com / Cyber Security News

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)