logo

Hackers Target Python Developers with Fake "Crytic-Compilers" Package on PyPI

ID: c0e671e9-0ccf-58d9-be48-88fcac25c196

STIX ID: report--c0e671e9-0ccf-58d9-be48-88fcac25c196

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-06-06

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

Researchers found a typosquatted PyPI package ('crytic-compilers') that impersonated a legitimate library and distributed the Lumma stealer (including executing a Windows payload), and separately Sucuri reported more than 300 WordPress sites compromised to display fake Chrome update pop-ups that redirect visitors to installers deploying information-stealers and remote access trojans via a legitimate plugin.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.