Oct. 13, 2023, 3:55 p.m. | Eswar

Cyber Security News cybersecuritynews.com

A new supply-chain attack, which was active throughout September 2023, has been discovered in which threat actors used Typosquatting and Startjacking techniques to lure developers using Alibaba cloud services, AWS, and Telegram into downloading malicious Pypi packages. The threat actors, who had the name “kohlersbtuh15” uploaded a series of malicious packages into the open-source package […]


The post Telegram, AWS, and Alibaba Cloud Users Targeted in Latest Supply Chain Attack appeared first on Cyber Security News.

alibaba alibaba cloud attack aws cloud cloud services cyber security developers latest malicious name packages pypi pypi packages september series services supply supply chain supply chain attack techniques telegram threat threat actors threats typosquatting

Technical Senior Manager, SecOps | Remote US

@ Coalfire | United States

Global Cybersecurity Governance Analyst

@ UL Solutions | United States

Security Engineer II, AWS Offensive Security

@ Amazon.com | US, WA, Virtual Location - Washington

Senior Cyber Threat Intelligence Analyst

@ Sainsbury's | Coventry, West Midlands, United Kingdom

Embedded Global Intelligence and Threat Monitoring Analyst

@ Sibylline Ltd | Austin, Texas, United States

Senior Security Engineer

@ Curai Health | Remote