Source |
The Hacker News |
Identifiant |
8621171 |
Date de publication |
2024-12-07 16:24:00 (vue: 2024-12-07 12:08:10) |
Titre |
Ultralytics AI Library Compromised: Cryptocurrency Miner Found in PyPI Versions |
Texte |
In yet another software supply chain attack, it has come to light that two versions of a popular Python artificial intelligence (AI) library named ultralytics were compromised to deliver a cryptocurrency miner.
The versions, 8.3.41 and 8.3.42, have since been removed from the Python Package Index (PyPI) repository. A subsequently released version has introduced a security fix that "ensures
In yet another software supply chain attack, it has come to light that two versions of a popular Python artificial intelligence (AI) library named ultralytics were compromised to deliver a cryptocurrency miner.
The versions, 8.3.41 and 8.3.42, have since been removed from the Python Package Index (PyPI) repository. A subsequently released version has introduced a security fix that "ensures |
Notes |
★★
|
Envoyé |
Oui |
Condensat |
another artificial attack been chain come compromised compromised: cryptocurrency deliver ensures fix found from has have index intelligence introduced library light miner named package popular pypi python released removed repository security since software subsequently supply two ultralytics version versions yet |
Tags |
|
Stories |
|
Move |
|