March 28, 2024, 11:35 a.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news


A few hours ago, The Python Package Index (PyPi) suspended new project creation and new user registration to mitigate an ongoing malware upload campaign.


The research team of Checkmarx simultaneously investigated a campaign of multiple malicious packages appear to be related to the same threat actors.


The threat actors target victims with Typosquatting attack technique using their CLI to install Python packages. 


This is a multi-stage attack and the malicious payload aimed to steal crypto wallets, sensitive data from browsers …

attack campaign checkmarx index malicious malicious packages malware package packages project pypi python python package python package index registration research target team threat threat actors under upload

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Senior InfoSec Manager - Risk and Compliance

@ Federal Reserve System | Remote - Virginia

Security Analyst

@ Fortra | Mexico

Incident Responder

@ Babcock | Chester, GB, CH1 6ER

Vulnerability, Access & Inclusion Lead

@ Monzo | Cardiff, London or Remote (UK)

Information Security Analyst

@ Unissant | MD, USA