Security experts have found a wide-ranging ad fraud network named Kaleidoscope that targets Android users and delivers unsolicited ads. Unlike some other scams, Kaleidoscope operates through seemingly official apps on the Google Play Store and harmful copycats on other app stores. Around 130 apps related to Kaleidoscope have been detected, creating about 2.5 million fake installs per month. It appears remarkably similar to the CaramelAds ad fraud network.

New Weaponized PyPI Package Attacking Developers to Steal Source Code
A malicious Python package named solana-token was discovered, designed to steal source code and sensitive data from Solana developers. Masquerading as a legitimate utility, it