March 28, 2024, 11:35 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news


A few hours ago, The Python Package Index (PyPi) suspended new project creation and new user registration to mitigate an ongoing malware upload campaign.


The research team of Checkmarx simultaneously investigated a campaign of multiple malicious packages appear to be related to the same threat actors.


The threat actors target victims with Typosquatting attack technique using their CLI to install Python packages. 


This is a multi-stage attack and the malicious payload aimed to steal crypto wallets, sensitive data from browsers …

attack campaign checkmarx index malicious malicious packages malware package packages project pypi python python package python package index registration research target team threat threat actors under upload

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC