Source |
The Hacker News |
Identifiant |
8290618 |
Date de publication |
2022-12-13 12:30:00 (vue: 2022-12-13 08:05:49) |
Titre |
Malware Strains Targeting Python and JavaScript Developers Through Official Repositories |
Texte |
An active malware campaign is targeting the Python Package Index (PyPI) and npm repositories for Python and JavaScript with typosquatted and fake modules that deploy a ransomware strain, marking the latest security issue to affect software supply chains.
The typosquatted Python packages all impersonate the popular requests library: dequests, fequests, gequests, rdquests, reauests, reduests, |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
active affect all campaign chains deploy dequests developers fake fequests gequests impersonate index issue javascript latest library: malware marking modules npm official package packages popular requests pypi python ransomware rdquests reauests reduests repositories security software strain strains supply targeting through typosquatted |
Tags |
Ransomware
Malware
|
Stories |
|
Move |
|