More

    Gmail servers hijacked by malicious PyPI packages to spread havoc – here’s how to stay safe




    • Socket found seven malicious packages on PyPI
    • The packages were abusing Gmail and WebSocket
    • They were removed from the platform

    Several malicious PyPI packages were recently observed abusing Gmail to exfiltrate stolen sensitive data and communicate with their operators.

    Cybersecurity researchers Socket, who found the packages, reported them to the Python repository and thus helped get them removed from the platform – however the damage has already been done.

    https://cdn.mos.cms.futurecdn.net/CBHUAsfrHYAci3MTWZBsgN.png



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img