News
Researchers found three malicious PyPI packages, two targeting bitcoin developers, and one WooCommerce stores Two are designed to steal data, and the third to test for valid credit cards All three ...
Attackers uploaded fake Python packages to PyPI that posed as Bitcoinlib tools and targeted wallet data. The malware infected ...
GCP’s ConfusedComposer flaw let attackers escalate privileges via PyPI packages; patched by Google on April 13.
Cybersecurity researchers have disclosed a malicious package uploaded to the Python Package Index (PyPI) repository that's ...
Developers can now use Pydantic's mcp-run-python server, distributed via JSR, to allow AI agents to execute Python code with ...
A newly discovered malicious PyPi package named 'disgrasya' that abuses legitimate WooCommerce stores for validating stolen ...
A new class of supply chain attacks named 'slopsquatting' has emerged from the increased use of generative AI tools for ...
The JFrog Security Research team has found a malicious package targeting crypto futures trading on the MEXC exchange.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results