Source |
The Hacker News |
Identifiant |
8629520 |
Date de publication |
2024-12-24 18:52:00 (vue: 2024-12-24 14:10:55) |
Titre |
Researchers Uncover PyPI Packages Stealing Keystrokes and Hijacking Social Accounts |
Texte |
Cybersecurity researchers have flagged two malicious packages that were uploaded to the Python Package Index (PyPI) repository and came fitted with capabilities to exfiltrate sensitive information from compromised hosts, according to new findings from Fortinet FortiGuard Labs.
The packages, named zebo and cometlogger, attracted 118 and 164 downloads each, prior to them being taken down.
Cybersecurity researchers have flagged two malicious packages that were uploaded to the Python Package Index (PyPI) repository and came fitted with capabilities to exfiltrate sensitive information from compromised hosts, according to new findings from Fortinet FortiGuard Labs.
The packages, named zebo and cometlogger, attracted 118 and 164 downloads each, prior to them being taken down. |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
118 164 according accounts attracted being came capabilities cometlogger compromised cybersecurity down downloads each exfiltrate findings fitted flagged fortiguard fortinet from have hijacking hosts index information keystrokes labs malicious named new package packages prior pypi python repository researchers sensitive social stealing taken them two uncover uploaded zebo |
Tags |
|
Stories |
|
Move |
|