Tech

Gmail servers hijacked by malicious PyPI packages to spread havoc – here’s how to stay safe

Share
Share


  • Socket found seven malicious packages on PyPI
  • The packages were abusing Gmail and WebSocket
  • They were removed from the platform

Several malicious PyPI packages were recently observed abusing Gmail to exfiltrate stolen sensitive data and communicate with their operators.

Cybersecurity researchers Socket, who found the packages, reported them to the Python repository and thus helped get them removed from the platform – however the damage has already been done.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Developing privacy-aware building automation
Tech

Developing privacy-aware building automation

The work of learning about the environment to better understand user intentions...

What happened and why it matters
Tech

What happened and why it matters

Credit: Pixabay/CC0 Public Domain On April 28, Spain experienced a widespread power...

Hundreds of top ecommerce sites under attack following Magento supply chain flaw
Tech

Hundreds of top ecommerce sites under attack following Magento supply chain flaw

Sansec found 21 Magento extensions with malicious code The extensions belong to...

What is the release date and time for Andor season 2 episodes 7 to 9 on Disney+?
Tech

What is the release date and time for Andor season 2 episodes 7 to 9 on Disney+?

Andor season 2 is halfway through its 12-episode run, so one of...