Cyberveille
curated by Decio
Nuage de tags
Mur d'images
Quotidien
Rechercher
Flux RSS
Flux RSS
Daily Feed
Weekly Feed
Monthly Feed
tags
search
Using Trusted Protocols Against You: Gmail as a C2 Mechanism...
Carding tool abusing WooCommerce API downloaded 34K times on PyPI
Python Crypto Library Updated to Steal Private Keys
Fake recruiter coding tests target devs with malicious Python packages
Xeon Sender | SMS Spam Shipping Multi-Tool Targeting SaaS Credentials
Iraq-based cybercriminals deploy malicious Python packages to steal data
Russia-linked 'Lumma' crypto stealer now targets Python devs
Cybercriminals pose as "helpful" Stack Overflow users to push malware
Over 170K users hit by poisoned Python package ruse
‘Wall of Flippers’ detects Flipper Zero Bluetooth spam attacks
A pernicious potpourri of Python packages in PyPI
Nothing new, still broken, insecure by default since then: Python's e-mail libraries and certificate verification
Python obfuscation traps
The evolutionary tale of a persistent Python threat
New Python NodeStealer Goes Beyond Facebook Credentials, Now Stealing All Browser Cookies and Login Credentials
Emerging Threat! Exposing JOKERSPY
Bad Actors Are Joining the AI Revolution: Here’s What We’ve Found in the Wild
Supply Chain Attack Using Identical PyPI Packages, “colorslib”, “httpslib”, and “libhttps”
SentinelSneak: Malicious PyPI module poses as security software development kit
A Custom Python Backdoor for VMWare ESXi Servers
W4SP continues to nest in PyPI: Same supply chain attack, different distribution method
Unpatched 15-year old Python bug allows code execution in 350k projects
Tarfile: Exploiting the World With a 15-Year-Old Vulnerability
Python packages upload your AWS keys, env vars, secrets to the web
Malicious PyPI package opens backdoors on Windows, Linux, and Macs