Dec 24, 2022Ravie LakshmananSoftware Security / Supply Chain
Threat actors have published yet another round of malicious packages to Python Package Index (PyPI) with the goal of delivering information-stealing malware on compromised developer machines.
Interestingly, while the malware…
Source: thehackernews.com – Read more

Clone, Compile, Compromise: Water Curse’s Open-Source Malware Trap on GitHub
The Water Curse group, a recently identified threat actor, has been using GitHub as a platform to deliver weaponized repositories. The group has a diversified