Sonatype, a software supply chain security firm, has discovered 17,954 open-source malware packages in Q1 2025, revealing a surge in software supply chain attacks. Over half of these malware threats were aimed at extracting sensitive data from software developers, according to the company’s Open Source Malware Index.

Bitcoin Python Library Targeted by Wallet Draining Malware
Machine learning helped detect malware aimed at bitcoinlib users, a popular Python library for creating Bitcoin wallets. Recognized under the names “bitcoinlibdbfix” and “bitcoinlib-dev,” the