Hackers Target Python Developers with Fake "Crytic-Compilers" Package on PyPI
ID: c0e671e9-0ccf-58d9-be48-88fcac25c196
STIX ID: report--c0e671e9-0ccf-58d9-be48-88fcac25c196
Feed Name: The Hacker News
Threat Score
Researchers found a typosquatted PyPI package ('crytic-compilers') that impersonated a legitimate library and distributed the Lumma stealer (including executing a Windows payload), and separately Sucuri reported more than 300 WordPress sites compromised to display fake Chrome update pop-ups that redirect visitors to installers deploying information-stealers and remote access trojans via a legitimate plugin.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
