A new coordinated cross-ecosystem software supply chain attack campaign has targeted npm, PyPI, and Crates.io to distribute credential-stealing malware. The campaign, codenamed TrapDoor, spans more […]
Cybersecurity researchers have discovered three packages on the Python Package Index (PyPI) repository that are designed to stealthily deliver a previously unknown malware family called ZiChatBot […]
An attacker pushed a malicious version of the popular elementary-data package Python Package Index (PyPI) to steal sensitive developer data and cryptocurrency wallets. The dangerous […]
TeamPCP hackers broke into the Telnyx package on the Python Package Index today. They uploaded harmful versions containing credential-stealing malware hidden in a WAV file. […]
The hacking group TeamPCP is continuing its supply chain attacks, now targeting the widely used “LiteLLM” Python package on PyPI and claiming to have obtained […]
© Bulletproof Servers. All rights reserved.