Iraqi Hackers Exploit PyPI to Infiltrate Systems Through Python Packages
ID: adeaa053-2a41-57e8-b0b9-6b4b2d3a9c8b
STIX ID: report--adeaa053-2a41-57e8-b0b9-6b4b2d3a9c8b
Feed Name: HackRead
Threat Score
Researchers uncovered malicious Python packages on PyPI that scan victims' file systems for source code, archives and images and exfiltrate stolen data to a hardcoded Telegram bot; the campaign—linked to an Iraqi criminal network—targets developers and companies, presenting a supply-chain risk as compromised packages can propagate into widely used software.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
